Meridian GRC

Governance · Risk · Compliance · Audit · Resilience

The operating system for enterprise risk

Not another GRC tool. One platform where your organization, risks, controls, regulations, policies, audits, and evidence live as a single connected graph — with an AI copilot that continuously understands your posture and recommends what to do next.

Your own isolated tenant in 30 seconds. No card required.

One connected data model

Organization → processes → assets → risks → controls → regulations → policies → audits → issues → evidence. Everything linked, nothing siloed.

AI-native, permission-aware

A copilot that answers from live platform data — and can only ever see what the asking user is allowed to see.

RBAC + ABAC to the row

Role grants scoped to the whole tenant, an org-unit subtree, or a user's own records. Enforced at the query layer, covered by automated tests.

Isolated tenants

Every customer in a hard-isolated tenant. Cross-tenant access is impossible by construction — requests return 404, never data.

Automation engine

Critical vulnerability? Issue created, owner notified, risk re-scored, action plan assigned, escalation armed — automatically, with a full execution log.

Enterprise sign-in

OIDC SSO (Okta, Azure AD, Keycloak), MFA via your IdP, hashed sessions, rate limiting, CSP/HSTS, append-only audit trail. Hosted in Switzerland.

Every discipline. One license model.

27 modules on a shared data model — license only what you need, connect everything you have.

Enterprise DashboardAI CopilotSearchRisk ManagementControl ManagementCyber RiskThird-Party RiskCompliancePolicy ManagementRegulatory LibraryPrivacyESGInternal AuditIssue ManagementAction PlansIncident ManagementEvidenceBusiness ContinuityOperational ResilienceOrganizationAsset RepositoryReporting & AnalyticsWorkflow EngineAutomationIntegrationsUsers & IdentityAdministration

See your risk posture in minutes

Spin up a tenant, register a risk, ask the copilot a question. That's the demo.

Start free