From policy management to the complete LGRC platform
This is where Ridisa is going. Policy management is product one of a full LGRC / GRC suite — delivered across three horizons, sequenced by adjacency to today's product and real customer pull.
Foundation
Policy Management
Library, workflows, versioning, audit trail.
Compliance Attestation
Read → quiz → sign campaigns.
Yara AI · M365
In-tenant AI, SharePoint & Azure AD native.
Expand the Suite
Board Management
Governance — portal, packs, minutes.
Matter & Contracts (CLM)
Legal — the everyday legal workload.
ERM & Internal Audit
Risk — register, audits, regulatory change.
Complete the Platform
Entity, Disclosures, IP
Deepen governance & legal coverage.
Vendor Risk & Continuity
Third-party, BCM, incidents & issues.
Privacy, Whistleblower, ESG
Full compliance & ethics breadth.
The GRC Universe
Four Pillars. One Platform.
A shared platform core with four orbiting pillars. Green nodes are live today — every other solution stacks onto the same spine, one module at a time.
Pillar 1
Governance
Govern with Confidence
How the organisation makes, records and proves its decisions — from the policy library to the boardroom.
- Live
Policy Management
Library, versioning, approvals, attestation, audit-ready.
- Next
Board & Committee
Agendas, packs, minutes, resolutions, e-voting.
- Planned
Entity Governance
Entity register, statutory records, filings, org charts.
- Planned
Disclosures & COI
Declarations, gifts register, related-party sign-off.
Pillar 2
Legal & Compliance
Run the Legal Function
Give legal teams a system of record for the work they do every day — matters, contracts and obligations.
- Next
Matter Management
Intake, triage, matter files, deadlines, legal-spend.
- Next
Contracts (CLM)
Clause library, e-sign, renewals, obligation reminders.
- Planned
Hold & eDiscovery
Holds, custodians, defensible chain of custody.
- Planned
Intellectual Property
Trademark & patent portfolio, renewal deadlines.
Pillar 3
Risk, Audit & ERM
See and Control Risk
Connect risks to the policies and controls that mitigate them — and to the audits that test them.
- Next
Enterprise Risk
Register, RCSA, heatmaps, appetite, KRIs with owners.
- Next
Internal Audit
Audit universe, planning, fieldwork, findings, follow-up.
- Planned
Vendor Risk
Due diligence, assessments, scoring, monitoring.
- Planned
Continuity & Incidents
BIA, continuity plans, incident & loss-event capture.
Pillar 4
Compliance & Ethics
Stay Ahead of Regulators
Turn obligations into action — and keep the timestamped evidence regulators actually accept.
- Live
Compliance Training
Read → quiz → e-sign, per-employee attestation trail.
- Next
Regulatory Change
Horizon scan; map new rules to policies & controls.
- Planned
Whistleblower & Case
Anonymous hotline, secure intake, investigations.
- Planned
Privacy & DSAR
RoPA, DSAR, DPIA, consent. Plus AML/KYC, SOX, ESG.