Nomiris
Stay informed

Your compliance spreadsheet is out of date.
It always will be.

Nomiris gives the CISO real-time visibility over every security control: live statuses, centralized evidence, risk owners followed up automatically. No spreadsheet, no emails.

Stay informed

Free trial · No commitment · No credit card

Dashboard

Real-time dashboard · Controls, assets and evidence · Demo data

Features

What the CISO never had before

Real-time visibility, automatic escalations, centralized evidence.

Controls

Every control tracked, every deadline met

Status, owner, evidence, deadline — everything is centralized. You see at a glance what is compliant, overdue, or pending.

Control overdue
A.5.15 — Access control
2h
Escalation L+1
A.5.15 — Marc Lefèvre
1j
Escalations

Automatic follow-ups, no more emails

D-3 reminder to owner. D+3 second follow-up. D+7 manager escalation. Nothing slips through the cracks.

Evidence

Risk owners upload, the CISO validates

Each owner accesses a simplified view of their assigned controls and uploads evidence directly. No more scattered email attachments.

Visibility

The CISO sees everything, owners see their part

Compliance percentage, overdue controls, missing evidence — the CISO has a real-time consolidated view, each owner only sees their actions.

  • A compliance percentage and each control's status in real time
  • Overdue controls and missing evidence at a glance
  • Risk owners only see their assigned controls
How it works

Three steps. Zero spreadsheet.

From import to continuous monitoring, everything is centralized.

Import

Upload your existing documents. Nomiris automatically detects controls, risks, and assets.

PDF, Word, Excel supported

Assign

Each control has an owner and a deadline. Automatic escalations replace your manual follow-ups.

D-3, D+3, D+7

Monitor

The CISO sees the global state. Risk owners upload their evidence. Nothing slips through the cracks.

Real-time dashboard

FAQ

Frequently asked questions

We already use Excel to track our controls — why switch?
Because Excel doesn't automatically follow up with your owners, doesn't centralize evidence, and is never truly up to date. Nomiris gives the CISO real-time visibility over every control: statuses updated without manual effort, evidence uploaded directly by owners, escalations that go out automatically. Fewer emails, more control.
How do escalations work in practice?
When a control is approaching its deadline, Nomiris automatically sends a reminder to the owner (D-3). At deadline (D+0), a second follow-up goes out. If still nothing by D+7, the manager is escalated. You configure the rules once — Nomiris handles the rest without you sending a single email.
Do risk owners have access to the full platform?
No — each owner has a dedicated space on Nomiris where they only see their assigned controls, grouped by status with their personal metrics. They upload evidence directly from that space. The CISO keeps the global view across all controls. Everyone sees what concerns them, nothing more.
Which frameworks are supported?
ISO 27001:2022 is the primary framework. Other GRC frameworks are in progress — if you have a specific need (NIS2, SOC 2, DORA), that's exactly the kind of feedback we collect with our design partners.
Can I use Nomiris now?
Nomiris is currently in a design partnership phase — we're working with a small number of security teams to iterate on the product before the official release. If you'd like to join this group and help shape the solution, reach out via the form. Commercial access will open very soon.
Is my data secure?
Yes. Nomiris is a Swiss company. Your data is hosted in Switzerland, encrypted in transit and at rest, and compliant with GDPR and nDSG.
Early access

Be among the first to know

Nomiris is in development. Leave your details and we'll notify you as soon as we open.

No commitment · No spam