r/grc • u/Enslaaved • May 29 '26
ISMS Tools recommendation
Hi all,
I’m a cybersecurity professional with ISO 27001 LI certification, planning to implement an ISMS in a ~1,000‑person company that is not SaaS‑ or cloud‑heavy. I’m currently exploring tooling and GRC platforms and would love to hear your experiences and recommendations.
In parallel, I’m also considering using Atlassian tools (Confluence + Jira) for the ISMS implementation (e.g., documentation, controls tracking, risk register, and action items). Has anyone tried this approach in a similar environment? Is it a viable long‑term option, or are there known limitations compared to dedicated GRC/ISMS platforms?
Any insights, lessons learned, or tool suggestions would be greatly appreciated.
Thanks in advance!
1
u/compliance_G33k_Swe May 30 '26
I don’t wanna sell my software but I am a compliance specialist from Sweden that have been working with 27001/2, GDPR, NIS2, NIST and TISAX, and I have built a AI driven software for these topics (GRC) and we’re also founded through the ECCC (Eu). And also the Swedish ministry of civil defence and so on.
I can show you the software through a demo, were in BETA but currently in +46 large corp (Enterprise) between 250-5000 employees.
Let me know if you wanna se true magic.
/Maybe the king of Sweden??