Let's talk
OUR SERVICES

From GRC challenge
to a workable solution.

Strategic where needed, practical where it matters. Preflexx supports analysis, design, execution and periodic assessment.

Discuss your challenge
GRCGovernanceRiskCompliance
EXPERTISE

Practical support
for your GRC challenge.

01

GRC Strategy

We translate objectives, regulation and risks into a manageable GRC direction.

  • GRC roadmap
  • Governance structure
  • Policy and ownership
More information →
02

Risk & Controls

We make risks visible and design controls so their execution and operation can be assessed based on evidence.

  • Risk analysis
  • Control framework
  • Periodic testing and monitoring
More information →
03

ISO & NEN

Practical support for management systems and preparation for internal and certification audits.

  • ISO 27001
  • ISO 9001
  • NEN 7510 for healthcare information security
More information →
04

Laws and regulation

Separate practical support for privacy and GDPR, and for the Dutch Cybersecurity Act implementing NIS2.

  • Privacy governance and GDPR
  • Cybersecurity Act/NIS2 readiness analysis
  • Roles, measures and evidence
More information →
ISO 27001ISO 9001NEN 7510GDPRCybersecurity Act/NIS2
IMPORTANT

Preflexx supports practical GRC implementation and preparation. Formal certification audits are performed by independent certification bodies. Formal legal advice may require additional legal expertise.