Modular GRC Platform

Pass ISO 27001 & SOC 2 faster.
Without spreadsheet chaos.

Modular compliance bricks for ISO 27001 and SOC 2 — plus GDPR, NIST, and HIPAA when you need them. Bring your own AI key, automate evidence linking, and skip the all-or-nothing platform.

EU-resident hosting BYO LLM keys Modular, no lock-in Audit-ready reports
Watch 2-min demo →

Three steps. No spreadsheets.

Pick your bricks, plug in your AI, ship audit-ready reports. The platform handles the connective tissue.

01

Pick your bricks

ISO 27001, SOC 2, GDPR, ISO 42001, EU AI Act, NIST AI RMF — pick only the frameworks your customers actually require. Stack more later. No all-or-nothing tax.

02

Plug in your AI key

OpenAI, Anthropic, Azure OpenAI, or your own local model. AI evidence linking and maturity scoring run against your provider — your billing, your audit trail, your data isolation.

03

Ship audit-ready reports

One-click export of the Statement of Applicability, control matrix, evidence with citations, internal audit findings, and management responses. Auditor-ready format. Skip the late-night formatting.

Three teams. Three pain points.

Self-identify, then pick the brick that fits.

Startup chasing SOC 2

Pre-built SOC 2 template, AI-assisted evidence linking, and a Statement of Applicability you can hand to your auditor. Skip the spreadsheet phase entirely.

Existing ISO 27001 team

Replace the Excel + email patchwork with a single source of truth. Re-certification without the panic — Annex A mapping, evidence, and workflows in one place.

Org adopting AI

ISO 42001 and EU AI Act readiness with your own AI keys. Inventory your AI systems, run risk assessments, and ship audit-ready reports — without sending sensitive data to a vendor.

Built for compliance teams
who want results, not busywork

A GRC platform built from modular bricks

BrickGRC is a Governance, Risk, and Compliance platform where every capability is a modular brick you assemble. Templates, workflows, integrations, AI engines — each one is an independent building block you combine to create something uniquely yours.

"Just like building a house — you pick the bricks, choose the layout, and construct something that's entirely your own."

Everything you need,
one brick at a time

Each feature is a modular brick — pick the ones you need and stack them into your perfect compliance program.

Compliance Frameworks

Templates

Pre-built compliance frameworks — ISO 27001, SOC 2, GDPR, and more — or build your own from scratch.

Audits & Assessments

Engagements

Run audits and assessments with guided workflows that keep your team on track from start to finish.

Process Flows

Workflows

Define states, transitions, and milestones. Your process, your rules — workflows that bend to fit your needs.

Evidence Management

Documents

Upload, link, and auto-match evidence to controls with AI. Every document, organized and traceable.

Extensible Catalog

Brick Market

Browse and install AI engines, compliance templates, auth providers, and your own custom integrations. Extend BrickGRC your way.

AI Compliance Assistant

AI-Powered

Compliance Coach, auto-scoring, evidence auto-linking — use our built-in AI or bring your own LLM subscription. AI that works alongside your team, not instead of it.

Compliance Reporting

Reports

Generate configurable compliance reports from your engagement data. Clear insights, ready for stakeholders and auditors.

Access Control

Team & Permissions

Role-based access, invite members, control who sees what. Built for teams of every size.

Your data. Your rules.
Always.

Your compliance evidence stays in your environment. Connect OpenAI, Anthropic, Azure OpenAI, or a local model — your provider, your billing, your audit trail. AI processing runs against the keys you provide. Per-tenant isolation by default; we host in the EU.

Use OpenAI, Anthropic, Azure OpenAI, or local models — your provider, your terms
Per-tenant isolation — your evidence is never mixed across customers
EU-resident hosting (Frankfurt) — for GDPR, Schrems II, and data-residency requirements
Export everything, any time — no vendor lock-in

Every organization is different.
Your GRC should be too.

BrickGRC doesn't force you into a rigid mold. You pick the bricks and build exactly what you need — no more, no less. Start with a pre-built framework or construct something entirely custom.

  • Customizable Templates Use proven frameworks or create your own from a blank canvas
  • Flexible Workflows Define your own states, transitions, and approval chains
  • Modular Integrations Add AI engines, cloud connectors, and tools from the Brick Market
  • Total Data Ownership Your LLM keys, isolated tenancy, full data export — you own everything
  • Your Compliance, Your Way No two setups need to look the same — and that's the point

Simple, transparent pricing

See where you stand for free. Upgrade when you're ready to fix it.

Start Here

Free Assessment

$0 forever

No credit card required

What you get
  • Full assessment + all scores
  • 1st gap preview (teaser)
  • 5 AI coaching questions
  • 2 document uploads
  • 1 team member
  • Results in 15 minutes
Not included
  • Full gap list (all controls)
  • PDF report download
  • Evidence pack (ZIP)
  • Remediation recommendations
  • Re-assessment & platform access
Get Your Score →
After your assessment
Unlock full report — $49
One-time purchase. Full gap list, PDF & evidence ZIP. Credited toward any plan if you upgrade.

Starter

$124 /mo

Billed annually

  • 1 guided framework brick
  • 3 integration bricks
  • 200 AI assists/mo
  • 5 users
  • 3 engagements
  • 5 GB storage
See full details Start Free Trial

Enterprise

Custom

Tailored to your needs

  • Unlimited everything
  • SSO (SAML / OIDC)
  • API access
  • Dedicated support
See full details Contact Sales

All plans include a 7-day free trial with full Professional features. No credit card required.

Why teams pick BrickGRC over all-in-one GRC platforms

Tired of rigid bundles where you pay full price for features you never use? BrickGRC is modular, AI-native, and BYO-key by default — pick only the bricks you need.

Feature BrickGRC Traditional GRC All-in-one platforms
Modular architecture
BYO LLM keys (data privacy) ~
AI-assisted evidence linking
Custom frameworks from scratch ~
Custom workflows & triggers ~
Brick Market / extensibility ~
Guided + Expert audit modes
Self-hosted option Soon
Starts at $124/mo $500+/mo $300+/mo

Start Building Today

Your compliance program doesn't have to be one-size-fits-all. Pick your bricks, stack them up, and build something that works.

Launch BrickGRC

Have questions?
Let's talk.

Whether you need a demo, want to discuss enterprise pricing, or just have a question about BrickGRC — we'd love to hear from you.

Full Plan Comparison

Bricks

Starter Professional Enterprise
Guided template bricks 1 Unlimited
Expert template bricks 0 Unlimited
Integration bricks 3 Unlimited
BYO LLM brick

AI

Starter Professional Enterprise
Built-in AI Assists 200/mo Unlimited
AI Blueprint generation
AI Design Template
AI Content Template

Custom Templates

Starter Professional Enterprise
Custom templates (workflows, actions, item types) Unlimited

Platform Limits

Starter Professional Enterprise
Users 5 Unlimited
Organizations 1 Unlimited
Engagements 3 Unlimited
Docs per engagement 50 Unlimited
Storage 5 GB 500 GB

Platform Features

Starter Professional Enterprise
Guided work
Expert work
Evidence linking
Compliance & maturity scoring
PDF reports (default template)
Engagement projects
Employee management
2FA / OAuth login
Custom report design & content
Fine-grained role permissions
API access + API keys
SSO (SAML / OIDC)