Modular compliance bricks for ISO 27001 and SOC 2 — plus GDPR, NIST, and HIPAA when you need them. Bring your own AI key, automate evidence linking, and skip the all-or-nothing platform.
Pick your bricks, plug in your AI, ship audit-ready reports. The platform handles the connective tissue.
ISO 27001, SOC 2, GDPR, ISO 42001, EU AI Act, NIST AI RMF — pick only the frameworks your customers actually require. Stack more later. No all-or-nothing tax.
OpenAI, Anthropic, Azure OpenAI, or your own local model. AI evidence linking and maturity scoring run against your provider — your billing, your audit trail, your data isolation.
One-click export of the Statement of Applicability, control matrix, evidence with citations, internal audit findings, and management responses. Auditor-ready format. Skip the late-night formatting.
Self-identify, then pick the brick that fits.
Pre-built SOC 2 template, AI-assisted evidence linking, and a Statement of Applicability you can hand to your auditor. Skip the spreadsheet phase entirely.
Replace the Excel + email patchwork with a single source of truth. Re-certification without the panic — Annex A mapping, evidence, and workflows in one place.
ISO 42001 and EU AI Act readiness with your own AI keys. Inventory your AI systems, run risk assessments, and ship audit-ready reports — without sending sensitive data to a vendor.
Choose Guided mode for step-by-step walkthroughs with AI coaching, or Expert mode for full control with bulk editing and direct evidence management.
Browse and install AI engines, templates, and integrations in one click.
Define states, transitions, triggers, and actions that match your process.
BrickGRC is a Governance, Risk, and Compliance platform where every capability is a modular brick you assemble. Templates, workflows, integrations, AI engines — each one is an independent building block you combine to create something uniquely yours.
"Just like building a house — you pick the bricks, choose the layout, and construct something that's entirely your own."
Each feature is a modular brick — pick the ones you need and stack them into your perfect compliance program.
Pre-built compliance frameworks — ISO 27001, SOC 2, GDPR, and more — or build your own from scratch.
Run audits and assessments with guided workflows that keep your team on track from start to finish.
Define states, transitions, and milestones. Your process, your rules — workflows that bend to fit your needs.
Upload, link, and auto-match evidence to controls with AI. Every document, organized and traceable.
Browse and install AI engines, compliance templates, auth providers, and your own custom integrations. Extend BrickGRC your way.
Compliance Coach, auto-scoring, evidence auto-linking — use our built-in AI or bring your own LLM subscription. AI that works alongside your team, not instead of it.
Generate configurable compliance reports from your engagement data. Clear insights, ready for stakeholders and auditors.
Role-based access, invite members, control who sees what. Built for teams of every size.
Your compliance evidence stays in your environment. Connect OpenAI, Anthropic, Azure OpenAI, or a local model — your provider, your billing, your audit trail. AI processing runs against the keys you provide. Per-tenant isolation by default; we host in the EU.
BrickGRC doesn't force you into a rigid mold. You pick the bricks and build exactly what you need — no more, no less. Start with a pre-built framework or construct something entirely custom.
See where you stand for free. Upgrade when you're ready to fix it.
No credit card required
Billed annually
Billed annually
Tailored to your needs
All plans include a 7-day free trial with full Professional features. No credit card required.
Tired of rigid bundles where you pay full price for features you never use? BrickGRC is modular, AI-native, and BYO-key by default — pick only the bricks you need.
| Feature | BrickGRC | Traditional GRC | All-in-one platforms |
|---|---|---|---|
| Modular architecture | ✓ | ✗ | ✗ |
| BYO LLM keys (data privacy) | ✓ | ✗ | ~ |
| AI-assisted evidence linking | ✓ | ✗ | ✓ |
| Custom frameworks from scratch | ✓ | ~ | ✗ |
| Custom workflows & triggers | ✓ | ~ | ✗ |
| Brick Market / extensibility | ✓ | ✗ | ~ |
| Guided + Expert audit modes | ✓ | ✗ | ✗ |
| Self-hosted option | Soon | ✓ | ✗ |
| Starts at | $124/mo | $500+/mo | $300+/mo |
Your compliance program doesn't have to be one-size-fits-all. Pick your bricks, stack them up, and build something that works.
Launch BrickGRCWhether you need a demo, want to discuss enterprise pricing, or just have a question about BrickGRC — we'd love to hear from you.
| Starter | Professional | Enterprise | |
|---|---|---|---|
| Guided template bricks | 1 | 5 | Unlimited |
| Expert template bricks | 0 | 3 | Unlimited |
| Integration bricks | 3 | Unlimited | Unlimited |
| BYO LLM brick | — |
| Starter | Professional | Enterprise | |
|---|---|---|---|
| Built-in AI Assists | 200/mo | 2,000/mo | Unlimited |
| AI Blueprint generation | — | ||
| AI Design Template | — | ||
| AI Content Template | — |
| Starter | Professional | Enterprise | |
|---|---|---|---|
| Custom templates (workflows, actions, item types) | — | Unlimited | Unlimited |
| Starter | Professional | Enterprise | |
|---|---|---|---|
| Users | 5 | 25 | Unlimited |
| Organizations | 1 | 3 | Unlimited |
| Engagements | 3 | Unlimited | Unlimited |
| Docs per engagement | 50 | Unlimited | Unlimited |
| Storage | 5 GB | 50 GB | 500 GB |
| Starter | Professional | Enterprise | |
|---|---|---|---|
| Guided work | |||
| Expert work | |||
| Evidence linking | |||
| Compliance & maturity scoring | |||
| PDF reports (default template) | |||
| Engagement projects | |||
| Employee management | |||
| 2FA / OAuth login | |||
| Custom report design & content | — | ||
| Fine-grained role permissions | — | ||
| API access + API keys | — | — | |
| SSO (SAML / OIDC) | — | — |