Kertos automates compliance management across GDPR, ISO27001, SOC2, NIS2, TISAX, and AI Act frameworks. The stack—Django, React, GraphQL, LangChain, Claude—reflects an LLM-first architecture for document generation and risk assessment; the mix of n8n, Zapier, and internal workflow tools suggests they're automating both client workflows and their own ops. Hiring velocity is decelerating while sales and marketing dominate the department mix, signaling a transition from build-and-launch toward revenue capture and customer-led product iteration.
Notable leadership hires: Head of Sales, Chief of Staff
Kertos is a Munich-based compliance automation platform founded in 2021, serving mid-market and enterprise customers navigating multi-framework regulatory environments. The product replaces manual compliance work—spreadsheets, consultant-led assessments, document drafting—by automating evidence collection, control mapping, and audit-ready reporting. Active projects span framework roadmaps (NIS2), customer feedback loops, and go-to-market execution, with internal pain points centered on scaling automation throughput and simplifying complex privacy processes. The company operates as a public entity with 51–200 employees.
Django and React for core platform, GraphQL for APIs, LangChain and Claude for AI-powered documentation and risk assessment, with orchestration via n8n and Zapier. Infrastructure runs on AWS with Kubernetes and Terraform.
GDPR, ISO27001, SOC2, NIS2, TISAX, ISO27701, AI Act, ISO42001, and DORA. The product is designed to adapt to each organization's unique risk profile and regulatory footprint.
Other companies in the same industry, closest in size