# Maiky > Maiky is the GRC (Governance, Risk & Compliance) and information-security management platform built for European organisations. It helps CISOs, security managers and DPOs manage compliance frameworks, automate evidence collection, run risk registers and audits, and stay audit-ready - without spreadsheets. Positioning: "GRC that supports your business, not just ticks boxes." Maiky also offers Third-Party Risk Management (TPRM) as a fully managed, done-for-you service. Maiky BV is a Belgian company (VAT BE0718712887). The platform is purpose-built for European and Belgian compliance, including native support for the Belgian CyberFundamentals (CyFun) framework that most US-built tools lack. All data is stored in the EU (Belgium). ## What Maiky does - Risk management: real-time 5x5 risk matrix, multiple risk registers, inherent vs. residual scoring, linked to controls/policies/suppliers. - Compliance frameworks: ISO/IEC 27001:2022, CyFun 2025 (BASIC / ESSENTIAL / IMPORTANT), NIS2, GDPR, DORA, ISO 27002, ISO 27017, SOC 2, ISO 42001, NSW AI Assessment Framework (AIAF). - Policy management: 29 pre-built information-security policies (Dutch, with English/French versions), version control and approval workflow. - Automation: scheduled control checks, automatic evidence collection, threshold alerts and auto-created tasks. - Audits: internal/external audit planning, findings and corrective actions. - Incident management: NIS2-compliant response with a 24-hour notification SLA timer. - Supplier / third-party risk (TPRM): available as a fully managed service (see below) and as a platform module - supplier register, questionnaires, risk scoring. - Trust Center: public and internal trust centers to share certifications and policies. - Asset management: living inventory of hardware, software, SaaS and data, CIA-classified and linked to risks, controls and processes. - Process management: document business processes, rate criticality (BIA), and link to assets, risks and controls; capture RTO/RPO for continuity. - Maturity assessment: control-by-control maturity scoring rolled up per framework domain, target levels, CyFun-style 1-5 scoring and trend tracking. - ITSM integration: push compliance tasks into Jira Service Management, Jira, ServiceNow and similar tools. - Integrations: an open REST API, webhooks and pre-built connectors for evidence collection, ITSM/ticketing, CMDB/asset and IAM tooling. Custom integrations and API access are part of the Enterprise plan. (A public integrations catalogue page is not currently published.) ## Managed TPRM service Maiky offers Third-Party Risk Management as a fully managed, done-for-you service - not just a platform module. Maiky's compliance experts run the entire supplier lifecycle for you: vendor classification, security assessments, risk scoring and reporting, remediation (engaging non-compliant vendors directly on your behalf), and audit-ready documentation - so you stay NIS2 compliant without spreadsheets. Typical impact: ~90% fewer manual tasks, no extra headcount, ~600 hours saved per year for 100 vendors. Service tiers: - Base: annual supplier questionnaire and transparent results for your broad supplier base. - Premium: adds an annual TPRM exposure report, gap reports to non-compliant suppliers, and annual remediation follow-up - for suppliers important to operations. - Critical: adds active quarterly follow-up, quarterly exposure reporting and priority escalation - for suppliers critical to the organisation. Page: https://www.maiky.io/en/tprm ## Implementation services Maiky offers guided GRC implementation services to help organisations go from zero to audit-ready in weeks. Packages range from a Starter Kickoff (2 sessions, 1 framework) to Full Implementation (dedicated lead, all frameworks, risk register, automation, 90-day support) and Enterprise Rollout (multi-entity, custom integrations, training, audit simulation). Implementation leads have held CISO, DPO, and ISO lead auditor roles. Page: https://www.maiky.io/en/implementation ## Partner network Maiky has a European network of partners and resellers, listed with a searchable, filterable map at https://www.maiky.io/en/partners. Two types: - Partners deliver the Maiky platform together with services - implementation, configuration, audits and managed GRC (e.g. GRC consultancies, MSSPs, ISO 27001/CyFun auditors, NIS2/DORA advisors). - Resellers sell and license the Maiky platform; services are delivered by Maiky or a partner. Coverage includes Belgium, Netherlands, France, Luxembourg, Germany, Austria, Switzerland, Spain, Portugal, Italy, Ireland, Denmark, Sweden and Poland. Organisations interested in joining can become a partner or reseller via the contact page. ## Pricing Pricing is per company size (FTE), shown per month excl. VAT; annual billing saves 10%. All tiers are sales-led (contact sales) - there is no self-serve checkout. SSO and EU data residency are included on all tiers. - CORE: for up to 250 FTE. From about EUR 292/month (annual billing) or EUR 325/month (monthly billing). Access to all security standards with up to 2 activated, maturity assessment, risk, policies and controls, audits and incidents, document centre and evidence collection. - PREMIUM: for up to 500 FTE. From about EUR 833/month (annual billing). Adds a third activated standard, external dashboard, ITSM and asset management, business impact assessment, supplier security (up to 50 suppliers), Trust Center and 25 custom workflows. - ENTERPRISE: up to 2000 FTE, then custom. From about EUR 1,667/month (annual billing). Adds unlimited activated standards, unlimited dashboards and suppliers, the GDPR module, custom integrations and API access, 50 custom workflows and a dedicated Customer Success Manager. ## Key pages - Home: https://www.maiky.io/en - Features: https://www.maiky.io/en/features - Feature - Risk Management: https://www.maiky.io/en/features/risk - Feature - Policy Management: https://www.maiky.io/en/features/policies - Feature - Compliance Frameworks: https://www.maiky.io/en/features/frameworks - Feature - Automation: https://www.maiky.io/en/features/automation - Feature - Audits: https://www.maiky.io/en/features/audits - Feature - Incident Management: https://www.maiky.io/en/features/incidents - Feature - Supplier / Third-Party Risk: https://www.maiky.io/en/features/suppliers - Feature - Trust Center: https://www.maiky.io/en/features/trust - Feature - Tasks & Reminders: https://www.maiky.io/en/features/tasks - Feature - Asset Management: https://www.maiky.io/en/features/assets - Feature - Process Management: https://www.maiky.io/en/features/processes - Feature - Maturity Assessment: https://www.maiky.io/en/features/maturity - Third-Party Risk Management (managed service): https://www.maiky.io/en/tprm - Pricing: https://www.maiky.io/en/pricing - Partners & resellers (list + map of the European partner network): https://www.maiky.io/en/partners - About: https://www.maiky.io/en/about - Contact / book a demo: https://www.maiky.io/en/contact - Book a demo (Calendly): https://www.maiky.io/en/demo - Free NIS2 self-assessment: https://www.maiky.io/en/assessments/nis2 - Frameworks - ISO 27001: https://www.maiky.io/en/frameworks/iso-27001 - Frameworks - CyFun 2025: https://www.maiky.io/en/frameworks/cyfun - Frameworks - NIS2: https://www.maiky.io/en/frameworks/nis2 - Frameworks - NSW AI Assessment Framework (AIAF): https://www.maiky.io/en/frameworks/nsw-ai-assessment-framework - Implementation services: https://www.maiky.io/en/implementation - Privacy Policy: https://www.maiky.io/en/privacy-policy - Cookie Policy: https://www.maiky.io/en/cookie-policy - Terms of Service: https://www.maiky.io/en/terms ## Languages The entire website is fully localized in 3 languages, with hreflang alternates and a localized sitemap for each: - English (/en) - default - Dutch / Nederlands (/nl) - French / Français (/fr) Every page listed above exists under each locale prefix (e.g. https://www.maiky.io/nl/pricing, https://www.maiky.io/fr/features/risk). ## Contact - Sales & demos: hello@maiky.io - Support: support@maiky.io - LinkedIn: https://www.linkedin.com/company/maiky-ssl