| PLATFORM & TOOLING |
| All Frameworks |
| Feature/Component | ESSENTIAL | PRO | PREMIUM |
| GRC Platform Access | ✓ | ✓ | ✓ |
| Vendor / Supplier Management | ✓ | ✓ | ✓ |
| In-Platform Asset Management | ✓ | ✓ | ✓ |
| Policy Management | ✓ | ✓ | ✓ |
| Risk Management (Not Included in GDPR Module) | ✓ | ✓ | ✓ |
| Pre-Built Control Library | ✓ | ✓ | ✓ |
| Policy & Documentation Templates | ✓ | ✓ | ✓ |
| Task & Evidence Management | ✓ | ✓ | ✓ |
| Upload & Link Existing Policies | ✓ | ✓ | ✓ |
| Audit Trail & Evidence Log | ✓ | ✓ | ✓ |
| Progress Score Dashboard | ✓ | ✓ | ✓ |
| Incident & Security Management Workflow | ✓ | ✓ | ✓ |
| Multi-Framework Cross-Mapping | Add-On | Add-On | ✓ |
| Multi-Entity Management | Add-On | Add-On | Add-On |
| Bi-Directional Task Syncronization | ✓ | ✓ | ✓ |
| User Access & Role Management (UAM/URM) | ✓ | ✓ | ✓ |
| Employee Data Sync (HR Software Integration ) | ✓ | ✓ | ✓ |
| Single Sign On (SSO) | ✓ | ✓ | ✓ |
| Two-Factor Authentification (2FA) | ✓ | ✓ | ✓ |
| Trust Center | ✓ (Kertos Domain) | ✓ (Kertos Domain) | ✓ (Your Domain) |
| Collaboration Spaces & Commenting | ✓ | ✓ | ✓ |
| In-App Awareness Training Modules | ✓ | ✓ | ✓ |
| Control Automation Through Integrations (Cloud, Git...) | ✓ | ✓ | ✓ |
| Breach Management Workflow (PII) | ✓ | ✓ | ✓ |
| Shadow IT Discovery | ✓ | ✓ | ✓ |
| Collaboration Spaces & Commenting | ✓ | ✓ | ✓ |
| Control Automation Through Integrations (Cloud, Git...) | ✓ | ✓ | ✓ |
| REST API Access | Add-On | Add-On | Add-On |
| MCP Read Access | ✓ | ✓ | ✓ |
| MCP Write Access | Add-On | Add-On | Add-On |
| Automated Slack Alerts & Reports | Add-On | Add-On | ✓ |
| Custom Frameworks | Add-On | Add-On | Add-On |
| Platform SLAs | Level 3 | Level 3 | Level 2 |
| Information Security Frameworks Only |
| ESSENTIAL | PRO | PREMIUM |
| Automated ISMS Platform | ✓ | ✓ | ✓ |
| Business Continuity Management (BCM) | Add-On | Add-On | ✓ |
| Information Security Asset Management | ✓ | ✓ | ✓ |
| Information Security Training Modules | ✓ | ✓ | ✓ |
| Data Protection Frameworks Only |
| ESSENTIAL | PRO | PREMIUM |
| Automated RoPA | ✓ | ✓ | ✓ |
| DPIAs | ✓ | ✓ | ✓ |
| Automated DSRs | Add-On | Add-On | Add-On |
| Data Privacy Training Modules | ✓ | ✓ | ✓ |
| Automated TOMs | ✓ | ✓ | ✓ |
| Seucrity Breach Management Workflows | ✓ | ✓ | ✓ |
| AI Governance Frameworks Only |
| ESSENTIAL | PRO | PREMIUM |
| Automated AIMS Platform | ✓ | ✓ | ✓ |
| AI Assets Inventory | ✓ | ✓ | ✓ |
| AI Risk Assessment | ✓ | ✓ | ✓ |
| AI Training Modules | ✓ | ✓ | ✓ |
| KAIA - AI COMPLIANCE CO-PILOT |
| Feature/Component | ESSENTIAL | PRO | PREMIUM |
| Vendors & Systems Auto-Fill | ✓ | ✓ | ✓ |
| Real-Time Insights & Recommendations | ✓ | ✓ | ✓ |
| Setup & In-App Product Guidance | ✓ | ✓ | ✓ |
| Pre-Audit Assistance | Add-On | Add-On | ✓ |
| Real-Time Compliance Monitoring | ✓ | ✓ | ✓ |
| MCP Integration | ✓ | ✓ | ✓ |
| Policy Co-Pilot (Policy Generator) | ✓ | ✓ | ✓ |
| Questionnaire Automation (AI) | Add-On | Add-On | ✓ |
| Universal Contextual Search | ✓ | ✓ | ✓ |
| Agentic Evidence Checker | ✓ | ✓ | ✓ |
| Assisted Register / Inventory Creation | ✓ | ✓ | ✓ |
| Assisted Risk Management Workflows | ✓ | ✓ | ✓ |
| Assited RoPA Creation | ✓ | ✓ | ✓ |
| IMPLEMENTATION PROJECT |
| Infromation Security and AI Governance Frameworks |
| Service | ESSENTIAL | PRO | PREMIUM |
| Project Kickoff | ✓ | ✓ | ✓ |
| Milestone Framework & Project Plan | In Platform | Review & Judge | Co-Create |
| Expert Check-Ins | - | ✓ | ✓ |
| Expert Q&A | - | ✓Fair Use | ✓Fair Use |
| Pre-Audit Completeness Check-In | ✓ | ✓ | ✓ |
| Internal Audit | Add-on | Add-On | Add-on |
| Post-Audit Review & Mitigation Strategy | - | - | ✓ |
| Milestone-based Expert Check-Ins | - | ✓ | ✓ |
| DPO Implementation Package |
| Service | ESSENTIAL | PRO | PREMIUM |
| Project Kickoff | ✓ | ✓ | ✓ |
| Milestone Framework & Project Plan | in Platform | ✓ | ✓ |
| Technical implementation of GDPR with CSM | ✓ | ✓ | ✓ |
| Milestone-based Expert Check-Ins | - | ✓ | ✓ |
| Expert Q&A | - | ✓ Fair Use | ✓ Fair Use |
| Expert Support Reply SLAs | - | High Priority RT | Maximum Priority RT |
| DPO Report | - | ✓ | ✓ |
| Post-Audit Review & Mitigation Strategy | - | - | ✓ |
| ONGOING CUSTOMER SUPPORT & SUCCESS |
| Service | ESSENTIAL | PRO | PREMIUM |
| Customer Support | ✓ | ✓ | ✓ |
| Customer Succcess Manager | ✓ | ✓ | ✓ |
| Personal Onboarding | ✓ | ✓ | ✓ |
| Support Response Time - SLA | High Priority RT | High Priority RT | Maximum Priority RT |
| Implementation Status Report & Check-In | ✓(Yearly) | ✓(Yearly) | ✓(Quarterly) |
| ONGOING CERTIFIED EXPERT SUPPORT |
| Service | ESSENTIAL | PRO | PREMIUM |
| Expert Collaboration | - | ✓ Fair Use | ✓ Fair Use |
| Support Response Time - SLA | - | High Priority RT | Maximum Priority RT |
| Quarterly operation & startegy check-ins | - | Add-On | ✓ |
| Audit and due diligence support | - | Add-On | ✓ |
| Community-Webinars and Events | Add-On | Add-On | ✓ |
| Direct Communication with customer's clients | - | Add-On | Add-On |
| Yearly Compliance Report | - | ✓ | ✓ |
| DPO - ONGOING SUPPORT (GDPR) |
| Service | ESSENTIAL | PRO | PREMIUM |
| Official appointment of the DPO (Art. 37) | - | ✓ | ✓ |
| Dedicated DPO | - | ✓ | ✓ |
| DPO Collaboration incl. Support Requests (e.g. Breach, DSR, Authorities, DPA check...) | - | ✓ Fair Use | ✓ Fair Use |
| SLA | - | High Priority RT | Maximum Priority RT |
| Informing and advise of general obligations (Art. 39) | - | ✓ | ✓ |
| Continuous compliance monitoring (Art. 39) | - | ✓ | ✓ |
| Yearly Privacy Report | - | ✓ | ✓ |
| Quarterly operation & startegy check-ins | - | Add-On | ✓ |
| Audit and due diligence support | - | Add-On | ✓ |
| Community-Webinars and Events | Add-On | Add-On | ✓ |
| Direct Communication with customer's clients | - | Add-On | Add-On |
| PARTNER SERVICES |
| Service | ESSENTIAL | PRO | PREMIUM |
| Pentesting | Add-On | Add-On | Add-On |
| Virtual CISO | Add-On | Add-On | Add-On |
| Whistleblowing | Add-On | Add-On | Add-On |
| Phishing Simulation/ Web Browsing Security | Add-On | Add-On | Add-On |
| Dark Web Monitoring | Add-On | Add-On | Add-On |
| Secret Detection | Add-On | Add-On | Add-On |
| Attack Surface Management | Add-On | Add-On | Add-On |
| External Certification Audit | Add-On | Add-On | Add-On |
| Compliance Data Migration (Other GRC Platforms) | Add-On | Add-On | Add-On |