grc-software

(10)
Company
The Banker’s Dilemma: When the Rulebook Becomes the Work
Fintech · Saas · Enterprise

The Banker’s Dilemma: When the Rulebook Becomes the Work

360factors began by putting a bank’s risks, controls, policies and audits in one place. Its newer bet is narrower and more revealing: give compliance teams a usable first draft of the evidence, then leave the judgment to them.

banking-compliance · regtechRead →
Company
The Spreadsheet That Called Back
Saas · Enterprise · Ai

The Spreadsheet That Called Back

Secureframe turned the least glamorous obstacle in enterprise sales - proving that your company is secure - into software. Its real product is not a certificate. It is fewer reasons for a deal to stall.

compliance-automation · security-complianceRead →
Legend
Michelle Randall Starts With 30 Conversations
Executive · Operator

Michelle Randall Starts With 30 Conversations

The five-time software CMO has a wonderfully inconvenient rule for arriving executives: listen to 30 customers before pretending to know the plot.

michelle-randall · onspringRead →
Company
NAVEX Turned the Ethics Hotline Into a $2.5 Billion Risk Machine
Saas · Enterprise · Ai

NAVEX Turned the Ethics Hotline Into a $2.5 Billion Risk Machine

The company began as a private-equity roll-up of four compliance specialists. Fourteen years later, its real advantage is not the hotline - it is the data trail that begins when someone decides to speak up.

governance-risk-compliance · grc-softwareRead →
Company
Onspring Turned Compliance's Spreadsheet Problem Into a No-Code Control Room
Saas · Enterprise · Ai

Onspring Turned Compliance's Spreadsheet Problem Into a No-Code Control Room

Risk teams do not need another place to store a checklist. Onspring's wager is that they need a system they can reshape themselves - and one customer's three-year software search shows why that matters.

grc-software · no-code-platformRead →
Company
Archer Built the Risk Register. Now It Wants to Make It Think.
Saas · Enterprise · Ai

Archer Built the Risk Register. Now It Wants to Make It Think.

The Kansas software veteran spent 25 years turning scattered audits, vendor questionnaires and risk registers into one enterprise system. Its next wager is that purpose-built AI can spot the trouble before the quarterly heat map does.

grc-software · integrated-risk-managementRead →
Company
LogicGate Turned the Spreadsheet Swamp Into a Risk Map - Now AI Has to Prove It Belongs There
Saas · Enterprise · Ai

LogicGate Turned the Spreadsheet Swamp Into a Risk Map - Now AI Has to Prove It Belongs There

Three consultants got tired of forcing risk teams into rigid software, so they built a no-code system around the way those teams actually work. A decade later, LogicGate is testing whether the same flexible foundation can make enterprise AI governable without turning judgment over to a machine.

grc-software · risk-managementRead →
Legend
A $4,000 Fine Built Harshvardhan Kariwala's Compliance Machine
Founder · Executive · Operator

A $4,000 Fine Built Harshvardhan Kariwala's Compliance Machine

A forgotten filing cost his bootstrapped startup $4,000. Then a city found the little tool he built to stop it happening again - and accidentally gave him his next company.

harshvardhan-kariwala · vcomplyRead →
Company
SafeBase Made Security Paperwork Sell Software - Then Drata Paid a Reported $250 Million
Saas · Enterprise · Ai

SafeBase Made Security Paperwork Sell Software - Then Drata Paid a Reported $250 Million

Enterprise deals were drowning in spreadsheets, NDAs and repeated security questions. SafeBase turned that paperwork into a self-serve product - and gave founders a crisp lesson in selling the bottleneck beside the bottleneck.

trust-center · security-questionnairesRead →
Company
Essert Inc.
Ai · Saas · Enterprise

Essert Inc.

Essert Inc. is a Silicon Valley software company that builds a Declarative AI platform to automate cybersecurity, privacy, and AI-governance compliance for enterprises. Founded in 2022 by a team of serial entrepreneurs, Essert helps publicly traded companies and regulated organizations navigate frameworks like the SEC Cybersecurity Disclosure Rules, CCPA/CPRA, and emerging AI regulation - auto-generating policies, running materiality and risk assessments, monitoring controls, and producing audit-ready disclosure reports.

sec-cybersecurity-rules · compliance-automationRead →