ISO 27005 risk analysis, multi-framework compliance and action plans — from risk to decision. Sovereign, hosted in Europe.
Beyond the feature list, six value promises structure the platform. Each pillar embeds several operational modules.
Identify, assess and quantify your risks using the ISO 27005 approach. AI-generated scenarios, interactive risk matrix, annual financial quantification.
Audit ISO 27001, NIS2, DORA, GDPR and HDS simultaneously. Security policies, records of processing activities, Statement of Applicability tracking.
Map your applications, servers and services with CIA scores. Feared events, business impacts, cross-navigation between assets and risks.
Anticipate threats with Threat Intelligence correlated to your assets, automated OSINT and the Phishia phishing simulation module.
Manage supplier risks (TPRM), monitor your supply chain and generate your cyber-insurance underwriting files.
Multi-entity steering, integrated DMS, professional exports (PDF, PPTX, XLSX) and executive dashboards.
Three examples of deliverables produced directly by Galea — an exact reflection of what your teams handle day to day.
Overview of your scored risks, clickable and filterable by entity or framework.
All your risks in one place, with owner, treatment status and history.
A PDF ready to present to your executive committee, defensible to auditors and insurers.
Galea is more than a platform. Our Phishia team supports your people — initial audit, training, operational follow-up — to turn the rollout into a measurable success.
Personalised 30-min demo, no commitment. Free trial available.
Join the companies that trust Galea to drive their cyber-résilience. 30-minute demo.
Already a customer? Go to the platform