Cohort 1 · SAT-led legacy

Verified 2026-05-19 · Decays 2027-11-19

Three buyers. Three decks.

Security Leader

The Security Leader

Proof for NIS2 that controls are working — not a GRC audit trail of completions, clicks, and policy acknowledgements.

Proof

Human Resilience Score with 90-day individual trajectory, role-weighted. NIS2 audit artefacts at role level. Beyond MetaCompliance's user-level risk score derived from completion + click + policy data.

Security Builder

The Security Builder

Cross-system behavioural signal — not MyCompliance Cloud telemetry.

Proof

Sixteen MITRE-aligned risk categories across identity, endpoint, data, collaboration. SCIM 2.0 with risk-attribute reverse-sync. Signal Bus into Sentinel and Splunk. MetaCompliance is platform-bound.

Head of IT

The Head of IT

The program off their plate — not a Policy / Privacy / Incident GRC workflow to operate.

Proof

Intervention fires from policy. Board pack assembles overnight. Repeat-clicker chase automated. MetaCompliance bundles four workflow products that each still need the Head of IT to operate.

Pick one before you dial. Don't mix scripts on a multi-stakeholder call.