Asset & risk management depth
DataGuard ISMS
A structured asset register with owners, tags and visualised dependencies, risks linked to assets, a distribution matrix and mitigation tasks with owners form a real chain, and asset updates can be fed from Azure. But we found no public information on a documented risk methodology, inherited protection needs across asset relations, or incident workflows carrying statutory reporting clocks; incident handling shows up as configurable workflows rather than a clocked process.
SECJUR Digital Compliance Office (ISMS)
The evidence shows a step-by-step assistant, central task management and a blanket 'complete NIS2 and DORA coverage' claim, but not one word on asset inventory, risk methodology, treatment tracking, protection-needs inheritance or incident clocks — the ISMS core is unevidenced, and that absence is the finding.