Compliance automation and CISO advisory for European mid-market
Secfix automates security compliance workflows across ISO 27001, SOC 2, NIS 2, DORA, EU AI Act, and TISAX for European SMBs and mid-market firms. The hiring mix—sales-heavy with concurrent engineering and security expansion—reflects a deliberate upmarket pivot: the company is scaling sales leadership (Head of Sales hire) while building mid-market playbooks and DACH-region sales motion, signaling a shift from founder-led SMB onboarding toward structured enterprise sales.
Notable leadership hires: Head of Sales
Secfix is a compliance automation platform headquartered in Munich that combines policy automation, evidence collection, risk assessments, and audit preparation with CISO-as-a-Service advisory. The platform covers ISO 27001, SOC 2, NIS 2, DORA, EU AI Act, TISAX, HIPAA, and GDPR. The company operates across 15+ European countries with customers ranging from SMBs to banks and multinational groups. Core offerings include continuous compliance monitoring, incident management, penetration testing, and security questionnaire automation—all designed to replace manual spreadsheet-based workflows and reduce reliance on external consultants.
ISO 27001, SOC 2, NIS 2, DORA, EU AI Act, TISAX, GDPR, and HIPAA. The platform automates evidence collection, policy management, risk assessments, and audit preparation across these standards.
AWS, Azure, GCP, Kubernetes, Docker, Terraform, Java, Jira, HubSpot, Azure AD, Claude, and Cursor. The infrastructure-as-code focus (Terraform, Kubernetes, Docker) supports a multi-cloud compliance automation architecture.
Other companies in the same industry, closest in size