
Supplier Shield provides an AI-native third-party risk management (TPRM) platform that replaces lengthy vendor questionnaires with adaptive assessments and automated evidence collection. The platform supports over 50 regulatory frameworks, including DORA, NIS2, and ISO 27001, and is hosted in Switzerland. It is part of the broader Acuna GRC suite, which expands into compliance, audit, and risk management modules.
Funding
Funding not disclosed
Founders
Product
Problem
Organizations struggle to manage third-party risk with outdated tools that rely on lengthy, repetitive questionnaires and manual evidence collection. This fragmented approach makes it difficult to maintain audit readiness, track supplier criticality, and comply with evolving regulations like DORA, NIS2, and ISO 27001.
Solution
Supplier Shield provides an AI-native TPRM platform that streamlines vendor risk management through adaptive questionnaires, automated risk tiering, and continuous monitoring. Vendors answer questions once, and the system reuses responses across multiple applicable frameworks, eliminating redundant data collection. The platform includes an evidence library, findings tracker, and audit-ready exports, enabling organizations to demonstrate compliance at any time. As part of the Acuna GRC suite, it expands into broader governance, risk, and compliance modules, including data protection, business continuity, and internal audit, all hosted in Switzerland.
Target Audience
Primary customers are regulated organizations, including financial institutions, healthcare providers, and IT and procurement teams, that need to manage third-party risk and comply with frameworks such as DORA, NIS2, and ISO 27001.
Features
- Adaptive questionnaires that replace 200-question vendor forms; vendors answer once and responses are reused across applicable frameworks
- Risk tiering by criticality, data access, and regulatory scope to prioritize high-risk suppliers
- Evidence library, findings tracker, and audit-ready exports for continuous audit preparedness
- Support for 50+ frameworks including DORA, NIS2, ISO 27001, FINMA, and GDPR with map-once, reuse-across-all assessments
- AI-assisted reporting and continuous monitoring capabilities embedded within the platform
- Swiss-hosted infrastructure ensuring data sovereignty and compliance with local regulations