Resource centre GRC & Cyber

Guides, ISO 27005 templates, webinars and API documentation — everything you need to master cybersecurity.

Go further

Our documents are available on request. Fill in the form and receive them by email within 24 hours.
Guide

Running an ISO 27005 analysis in 4 weeks

Step-by-step methodology for ISO 27005 risk management. With templates, examples and deliverables checklist.

PDF — 42 pages2026
Request the document →
Checklist

NIS2 checklist — Are you compliant?

50 control points to assess your NIS2 compliance. Suitable for essential and important entities.

PDF — 8 pages2026
Request the document →
Template

ISSP template — Information Security Policy

Complete, customisable ISSP template aligned with ISO 27001. Editable sections to adapt to your industry.

DOCX — 28 pages2026
Request the document →
Whitepaper

AI and risk analysis — Opportunities and limits

How generative AI is transforming GRC practices, what it can automate and where human expertise remains essential.

PDF — 18 pages2026
Request the document →
Guide

GDPR guide for SMEs

The essential steps to bring an SME into GDPR compliance: processing register, DPIA, data processing agreements.

PDF — 30 pages2026
Request the document →
Phishia

Anti-phishing guide for your teams

Complete awareness kit: poster, quiz, training scenarios. Co-produced with phishia.fr.

ZIP pack2026
View on phishia.fr →

Ready to use

XLS
Business values and supporting assets table (Workshop 1) Pre-formulated Excel sheet with filling guide
Request
XLS
Catalogue of sector-specific risk sources (Workshop 2) Catalogue of 100+ sector sources, with 12 pre-loaded by default based on your industry
Request
PPT
Complete ISO 27005 report template 50-slide PowerPoint presentation, ISO 27005 structure
Request
DOC
ISO 27001 Statement of Applicability (SoA) Word document with the 93 controls pre-integrated
Request

Learn from our experts

Replay available
Available on replay

NIS2: How to achieve compliance before ANSSI audits?

Feedback from 3 essential entities, checklist of the 10 measures, Q&A with an expert.

Register for free
Replay — March 2026

ISO 27005 with Galea: live demo step by step

Full demonstration of the platform on a real-world case. 200+ participants, 4.8/5 satisfaction.

Watch the replay →
Replay — February 2026

Phishing 2026: new techniques, new defences

Analysis of the most recent phishing campaigns with the Phishia team. Co-hosted with phishia.fr

View on phishia.fr →

Integrate Galea into your ecosystem

The Galea REST API (Advanced plan) allows you to integrate GRC data into your existing tools: SIEM, SOAR, ITSM, custom dashboards.

REST API with OAuth2 authentication
Webhooks for Threat Intelligence events and alerts
Python and JavaScript SDKs available
OpenAPI / Swagger documentation
Request API access
GET /api/v1/risks
HTTP 200 OK
{
"total": 42,
"critical": 7,
"risks": [
{
"id": "RSK-001",
"score": 16,
"status": "reduce"
}
]
}
Free trial — No credit card

Ready to secure your organisation?

Join the companies that trust Galea to drive their cyber-résilience. 30-minute demo.

Already a customer? Go to the platform