One questionnaire across every plant, the results in a group dashboard. The difference is in the filling in: the module searches the documents you hold and offers the matching passages, with their source, as suggestions. And it tells you where nothing is documented. Official snapshots are immutable, hosting in Germany.
Book a free demoWhat sets the Assessment module apart
What costs time is not the questionnaire, it is the searching. The answers already sit in policies, concepts and audit reports, just not in the questionnaire. The Assessment module pulls them out of there and puts them in front of you.
Opening a question searches the documents you are cleared to read and shows the matching passages with their source. One click adopts a passage into the answer field, where you can still edit it; nothing is stored until you save. No text is composed along the way, the module searches and shows. A human sets the answer.
„Nothing in your documents matches this question" is the finding that counts: your gap evidence. The coverage preview for a whole unit is built from it, and that runs across every question rather than a sample. A technical failure is a separate, third state and never counts as a gap.
In a follow-up round the module proposes the answers from the previous run. They arrive as a suggestion, not as an answer: the answer field stays empty until someone confirms. You decide whether a question or a whole block may be prefilled, and the source run is recorded in the audit trail.
Which documents someone can search is decided by the server from their permissions, never by the request: whoever is responsible for one plant sees only that plant's documents. And before a question is evaluated, the system checks that the data residency agreed with you is being kept.
The Assessment module measures your organisation's maturity against recognised standards or your own catalogues. No Excel round-robins, no manual slide consolidation.
All sites, plants and business units as colour-coded tiles, from critical to compliant. Scores aggregate along your organisational structure: the plant score feeds the country score, which feeds the group score. With site comparison and trends across collection waves.
One assessment wave instead of separate runs per site: select the target units and each automatically receives its own assessment run. Real-time progress across all units, binding deadlines, automatic flagging of units without a current state after 45 days.
Bundled standards or your own catalogues with configurable questions, weighting and requirement levels MUST, SHOULD, MAY. Import further catalogues in OSCAL format directly from GitHub.
Site owners see progress, open questions and days remaining until the deadline. Specialist questions can be delegated to experts, answers from the parent unit are inherited and only adapted locally.
A snapshot freezes answers, scores and evidence references; the system checks mandatory questions and mandatory evidence first. Once approved, a state is immutable. The diff view shows what changed since the last official state.
Evidence documents with versioning and retention periods, three scoring models from weighted scale to maturity levels, reports as PDF, Excel or a complete package with evidence directory. Every action is recorded in the audit trail.
Captures from the platform, taken from one completed assessment across five plants.
Recognised frameworks as the foundation, custom catalogues where needed. New frameworks are data maintenance, not custom development.
The module is built for independent use. If you want an outside perspective, you get it on the same platform.
Your team runs assessments independently: pick a catalogue, start a data collection, sites answer, results show up in the group dashboard. Suited for organisations with their own CISO or security team.
Book a free demoCybervize experts run the assessment on the platform, moderate the interviews and deliver the results report with a measure list. Afterwards you can continue operating the platform yourself.
See the assessment solutionThree constellations in which the module replaces Excel round-robins and manual slide consolidation.
Responsible for IT and OT security across many plants, needs a reliable maturity level per site instead of gut feeling. Data collections across all plants, IEC 62443 maturity levels, site comparison and trends in the group dashboard.
Needs an honest picture first: where do we stand, what is missing? Gap assessment based on DIN SPEC 27076 or a custom catalogue as the starting point. Identified gaps become measures in the ISMS module.
Answer their questionnaire in the owner cockpit, delegate specialist questions to experts at the plant and inherit central answers. Visible is only what their role needs.
The Assessment module shares the data layer, permission model and audit trail with the ISMS (ISO 27001), BCM (ISO 22301) and TPRM modules. Identified gaps become ISMS measures, assessment results feed the risk picture. Licensing is modular: you can start with the Assessment module and extend when needed.
See the full platform