Home / About

Our mission: democratising cyber resilience

Galea was born from a simple observation: SMEs and mid-sized companies cannot afford a full-time GRC team. AI is changing the game.

Born from frustration, built with methodology

Working with several of their clients — industrial mid-sized companies, consulting firms, operators of vital importance — Hugo Lanier and Tristan identified the same problem: cyber teams spend weeks filling Excel spreadsheets for ISO 27005 risk analyses, a time-consuming process prone to errors and rarely kept up to date.

The idea for Galea emerged from this shared frustration: what if AI could automate the mechanical part of risk analysis, so that experts could focus on strategic decisions rather than data entry?

Today, Galea covers the entire GRC cycle, from asset inventory to phishing campaigns (via Phishia), through multi-framework compliance and threat intelligence.

2023
The idea takes shape

First AI risk analysis prototype based on ISO 27005

2024
Galea v1.0

Launch of the complete GRC platform. First enterprise clients.

2025
Phishia & expansion

Launch of the Phishia module. NIS2/DORA compliance. Mobile application.

2026
Today

Full platform, multi-tenant, deployed at Airbus, Bouygues and others.

What we believe in

Digital sovereignty

All data hosted in France. Auditable source code. No dependency on US tech giants. Galea is proud to be 100% European.

Methodological rigour

ISO 27005:2022, ISO 27001, ISO 31000. We do not reinvent the wheel — we automate the best existing methodologies.

Accessibility

Cybersecurity is not reserved for large corporations. Galea makes enterprise CISO tools accessible to any company with 10 employees.

Built by experts, for experts

HL

Hugo Lanier

Managing Director — Business

Cybersecurity consultant, specialist in ISO 27005 and ISO 27001. Responsible for business development and client relationships.

TR

Tristan ROBERT DE SAINT VINCENT

Managing Director — Technical

Architect of the Galea platform. Responsible for infrastructure, AI and product development.

OM

Oumeyma Mejbri

Business Development

In charge of partnership development and client acquisition. Your key point of contact for GRC projects.

Our ecosystem

ISO 27005 compliant frameworks

Galea natively implements the international ISO 27005 standard — ISO 27005:2022, ISO 27001, NIS2 — so your analyses are directly defensible to your auditors.

A fully sovereign chain

European sovereign AI, hosting in France, data encrypted at rest. Every link of our chain stays under European jurisdiction — your risk and compliance data never leaves the territory.

Want to join us?

We are hiring GRC experts, AI developers and enterprise sales professionals.

View open positions
Free trial — No credit card

Ready to secure your organisation?

Join the companies that trust Galea to drive their cyber-résilience. 30-minute demo.

Already a customer? Go to the platform