OptiTech fits into every stage of growth, from your first compliance requirement to managing compliance across an entire group or client portfolio - without forcing you to change tools along the way.

Stage 1: Your first framework

Real compliance coverage without a consulting project

When a customer or a regulation first asks you for proof, what you want is clarity and a manageable to-do list. OptiTech's Start plan abstracts most of the setup work and gives you access to core capabilities from day one.

  • The free scoping test shows which laws apply to you and which NIS2 category you fall into before you spend anything
  • The gap analysis turns the legal text into a prioritized action list you can start on the same day
  • 50+ Swedish policy templates and AI drafting replace weeks of document writing
  • 10 integrations collect evidence automatically from systems like Microsoft 365, Entra ID, and GitHub
  • The MSB and IMY incident flows are included from the start, so a reporting deadline never catches you unprepared

Stage 2: Growing companies

Several frameworks, one program

As your business grows, so do your obligations: ISO 27001 for enterprise deals, DORA because a bank became a customer, GDPR because it never went away. OptiTech gives growing teams one program instead of parallel projects.

Audit readiness checklist

Before your next audit, go through this checklist to make sure your controls, evidence, and documentation are in order.

  • Cross-mapped controls mean one control satisfies requirements in several frameworks at once
  • All integrations, including Fortnox, Visma, BankID, and Kivra, verify controls around the clock
  • Vendor risk management tracks your suppliers with automated questionnaires and risk classification
  • The Trust Center shortens your customers' security reviews and your sales cycles
  • The AI copilot drafts policies and answers incoming security questionnaires from your verified controls
  • Security awareness training in Swedish keeps your whole team, including the board, up to date

Stage 3: Groups, enterprises, and partners

Frictionless compliance at scale

At this stage, organizations need isolation between units, automation, and oversight without ballooning costs or a compliance department the size of a small company. OptiTech's multi-tenant architecture addresses these requirements directly.

Operational efficiency

  • Unlimited frameworks under one roof, with a compliance score and trend per framework
  • The DORA package produces the ICT contract register and reports supervisors ask for
  • The auditor portal gives auditors and authorities read-only access to a complete, time-stamped evidence chain
  • SSO and SCIM manage access centrally alongside BankID
  • One-click board reports prove active governance across every entity

Multi-entity and multi-tenant

  • Separate projects per subsidiary or business unit provide strong isolation with group-level oversight
  • API-first management enables programmatic control of controls, evidence, and reporting across entities

Fleet management for partners

  • The Partner plan gives MSPs, accounting firms, and advisors a multi-tenant console for all their clients
  • White-label options let you deliver compliance under your own brand
  • Volume pricing keeps unit costs low across a large client portfolio
  • Compliance as code: the API and CLI let technology clients run checks in their CI/CD pipelines
Partner plan

If you manage compliance for multiple clients, contact us for partner pricing, a multi-tenant console, and white-label options.