Skip to main content
G

Galink

Galink provides an AI‑native vendor risk management platform that automates the collection, verification and analysis of supplier security evidence. By centralizing all vendors—including IT, non‑IT and shadow IT—and continuously extracting certifications to perform gap analysis against frameworks such as ISO 27001, NIST or DORA, the solution delivers a real‑time risk score, remediation tracking and audit‑ready reports, cutting analysis time by up to tenfold while ensuring data residency and privacy.

Paris, FR,USFounded 202411700+ followers
Updated 2 months ago

Funding

Funding not disclosed

Funding rounds are not available yet.

Founders

Founder details are not available yet.

Product

Problem

Security and GRC teams spend extensive manual effort collecting questionnaires, verifying certifications, and assessing cyber risk for each supplier, leading to slow, error‑prone vendor risk management and limited visibility into shadow IT and non‑IT providers.

Solution

Galink offers an AI‑native vendor risk management platform that automates the collection and analysis of supplier security evidence. Users configure their risk framework once (e.g., ISO 27001, NIST, DORA) and the system continuously extracts certifications, validates documents, and flags gaps against the chosen standards. The platform centralizes all vendors—IT and non‑IT—provides a unified risk score, tracks its evolution over time, and highlights remediation priorities. Integrated AI agents handle repetitive tasks such as evidence detection, gap identification, and score calculation, reducing analysis time by up to tenfold. Results are presented in a clear dashboard with audit‑ready reports, while data residency and privacy are enforced through optional EU or US hosting and a policy that excludes customer data from model training.

Target Audience

Primary customers are corporate security, GRC, and compliance teams responsible for third‑party risk management in regulated industries across Europe and North America.

Features

  • AI‑driven extraction of security certifications and continuous monitoring of supplier documentation
  • Automated gap analysis against customizable frameworks (ISO 27001, NIST, DORA, etc.) with real‑time risk scoring
  • Centralized repository for all vendors, including shadow IT detection and non‑IT suppliers
  • Dashboard with trend visualizations, remediation tracking, and audit‑ready reporting
  • Data residency options (EU or US) and strict policy ensuring customer data is never used to train the AI model
  • ISO 27001 certification and ongoing SOC 2 Type II compliance with regular penetration testing
This profile is AI-generated and may contain inaccuracies.