The sovereign operating layer for critical risk.

oneSec builds European software for work that demands control. FokusRM, our flagship product, gives cyber and IT risk teams one structured system for risks, controls, third parties, findings, evidence, and reporting.

Built for lean security teams, scaling companies, and enterprises that need audit-ready records without GRC bloat.

FokusRM/Cyber Risk/Cyber risk operations
Current
>_Review today’s cyber and IT risk posture
Risk domains6 domains in scope
Cyber risks1m
ISO 270012m
Third parties3m
Findings4m
Evidence5m
Controls6m
Risk recordIn treatment

Critical supplier access risk needs an owner

Privileged supplier access remains open after the latest review. Impact and likelihood are scored; treatment ownership is the remaining blocker.

Linked evidence
Cyber risksverified
ISO 27001verified
Third partiesverified
Findingsverified
Treatment plan

Assign a risk owner and confirm the treatment deadline.

Risk owner
Security & IT
Status
In treatment
Open FokusRM

Run cyber and IT risk operations without GRC bloat.

FokusRM brings the workflows security teams run every day into one traceable platform. Start with a lightweight product, or add analyst support through a managed operating model.

Explore FokusRM at fokusrm.com
FokusRM/Cyber Risk/Cyber risk operations
Current
>_Review today’s cyber and IT risk posture
Risk domains6 domains in scope
Cyber risks1m
ISO 270012m
Third parties3m
Findings4m
Evidence5m
Controls6m
Risk recordIn treatment

Critical supplier access risk needs an owner

Privileged supplier access remains open after the latest review. Impact and likelihood are scored; treatment ownership is the remaining blocker.

Linked evidence
Cyber risksverified
ISO 27001verified
Third partiesverified
Findingsverified
Treatment plan

Assign a risk owner and confirm the treatment deadline.

Risk owner
Security & IT
Status
In treatment
Open FokusRM
01

Operate the risk register

Capture cyber and IT risks, score impact and likelihood, assign owners, and track treatment from identification to closure.

02

Assess controls and third parties

Map control posture against ISO 27001, NIST CSF, CIS, or custom frameworks, then run supplier onboarding and recurring reviews.

03

Stay ready for scrutiny

Connect findings, remediation, and evidence, then generate leadership reporting with the underlying record still intact.

Purpose-built products for work that carries consequences.

FokusRM leads the portfolio in cyber and IT risk. LawKI applies the same oneSec principles to legal work: grounded intelligence, controlled deployment, and outputs professionals can defend.

A focused risk product today. A governed product platform tomorrow.

FokusRM solves a defined operational problem now. oneSec supplies the architecture, governance, and deployment discipline behind products that can expand across strategic, regulated workflows.

01
Security teams
Risk ownership
02
FokusRM
Risk operations
03
oneSec platform
Governed intelligence
04
Frameworks & evidence
Defensible records
  • Identity and access
  • Policy and governance
  • Data protection
  • Audit and observability
  • APIs and integrations

Sovereign by architecture. Ready for critical work.

oneSec is built in Europe for organisations that need control over where data lives, how systems behave, and who can act. Security, governance, and observability are engineered into the operating layer from day one.

European data control

Deployment and residency options aligned to your boundaries.

Governed intelligence

Access, evidence, and human review stay visible.

Industrial security

Least privilege, auditable actions, resilient deployment.

Built to integrate

Connect the systems that already carry the operation.

Strategic software should increase operational independence, not erode it.

Bring us the risk workflow that is slowing you down.

Tell us how you handle registers, controls, suppliers, findings, or evidence today. We will respond with a direct view on fit, rollout, and the fastest credible path to FokusRM.

Response standard

A considered reply from the oneSec team within one working day.

What brings you here?

We respond within one working day and use your details only to handle your enquiry.

By sending, your details are used only to handle your enquiry. Details in our privacy policy.

Make cyber risk operational.

Move from fragmented records to a structured, audit-ready operating model.