Your In Control Engine (YICE)

Import, create and combine your own control frameworks,
ISO, NEN, AVG, DORA, NIS2, BIO, ISAE, SOC, EBA, NIST and many other frameworks

Insight

Always an accurate compliance insight, so you can manage and adjust where needed

Filter

See and manage only the topics that are relevant for you

Monitoring

Manage your risks based on inherent, actual and/or nett risk levels

20+

Control frameworks

24/7

Availability

1.000+

Controls

Work together

Collaborate with all stakeholders in a single GRC platform. Grant the appropriate access to security officers, auditors, managers, executives, system administrators and external parties. With role-based authorisations, each user only sees the information relevant to their role.

Configure to your organisation

Configure YICE to match the way your organisation works. Set up dashboards, roles, retention periods, entities and relationship types without any programming or external consultants. This allows the platform to adapt to your processes, rather than the other way around.

Plan-Do-Check-Act

YICE supports the entire PDCA cycle without enforcing a fixed way of working. Record assets, risks, controls and objectives, carry out improvement actions, and conduct assessments and audits. Dashboards, risk-based alerts and periodic notifications provide continuous insight into progress and outstanding actions.

Document everything centrally

Store all relevant information in one central location. Link policies, procedures, certificates, audit reports and other documents directly to the appropriate risks, controls or processes. Use hyperlinks to easily reference documents in SharePoint, Confluence or another environment.

Test once, comply to many

Avoid doing double work by recording controls once and linking them to multiple frameworks. A single control can, for example, simultaneously meet the requirements of ISO 27001, NIS2, DORA, GDPR and SOC 2. This makes audits more efficient and provides demonstrable compliance more quickly.

Import and export

Quickly transfer existing data to YICE or export information whenever you need it. Import control frameworks, risks, assets, controls and improvement actions, among other data. Export data to CSV or generate PDF overviews for reporting, analysis or further processing.

Benefit from years of practical experience

YICE was built based on real-world practice and the knowledge and experience of specialists across various industries.

ISO 27001 certified

YICE B.V.’s information security management system demonstrably complies with the strict requirements of ISO 27001. We consider this important not only for our hosting provider and data centres, but also for our own organisation. ISO 27001 certification makes a significant contribution to the professionalism of our services and strengthens customer confidence in the information security of the YICE GRC platform.

Security and continuity features

  • Secure Connections
  • Encrypted Database
  • Multi-Factor Authentication (App, SMS or Email)
  • Fully segregated client environment
  • All Data Stored in European ISO 27001-Certified Data Centres
  • Layered Backup Strategy (VPS, Subdomain, Database and Files)
  • Contiuity of services

Fully automated pentests. Reports with detailed findings
available for inspection on request.

And much more, like client defined time-out period and log-file retention period.

Partners

In most cases YICE is supplied and maintained by specialized partner organisations. They combine their know-how of compliance, risk-management and information security with the flexibility of the YICE platform. That way you get a solution that fits the needs of your organisation and the support you want as well.

Want to find out which of our partner organisations best suits your needs, or just receive some additional information regarding our licensing? Use the contact information below to get in touch with us.

tekst

Have you recently received your ISO 27001 certification?

Take the step to convert your ISMS to YICE’s robust and scalable platform.
With YICE you can easily show any auditor that your organization is compliant with the ISO 27001 demands, the demands of your clients and your own demands.