Pending verification
This listing is under review and will appear in the directory once approved.
What is Rizzqo?
Rizzqo is a GRC platform for companies that have to prove compliance with ISO 27001, ISO 27002, NIS2, DORA, GDPR, the EU AI Act, TISAX, the Cyber Resilience Act and similar frameworks. Instead of starting from a list of controls and a spreadsheet of yes or no answers, Rizzqo starts from the organization. You model your services, systems, suppliers, data and the people who own them. Each control becomes a concrete requirement for the asset types it applies to and is assigned automatically. The owner answers it, attaches evidence and confirms it. Compliance status is calculated from these answers, and one piece of evidence counts for every framework that asks for it. Gaps become risk assessments with inherent, current and residual risk, a monetary value in euros and a documented treatment decision. Follow-up work goes to Jira. Dashboards show management where the organization stands and what is overdue. Suppliers, personal data and AI systems live in the same model, so third-party risk, GDPR records and EU AI Act obligations are handled with the same assets and owners. Rizzqo is made in Germany by Rizzqo GmbH in Lindau and runs on-premises or in a cloud in the customer’s own country, with SSO and SCIM, a full audit log and daily backups. Licensing is an annual subscription.
Key features
- Asset-first compliance model: services, systems, suppliers, data and owners
- Frameworks including ISO 27001, ISO 27002, NIS2, DORA, GDPR, EU AI Act, CRA, TISAX, NIST CSF 2.0 and many more
- Requirements assigned automatically per asset type, with evidence and owner confirmation
- Risk assessments with inherent, current and residual risk and euro value
- On-premises or cloud in the customer’s country
- SSO, SCIM, audit log, daily backups
Category
Website



