Asset & risk management depth
DataGuard ISMS
A structured asset register with owners, tags, dependency views and risk linking, plus a risk matrix, pre-built risk and measure libraries and treatment tracking with assigned tasks, is a system I could actually run alongside the day job. Incident handling shows up as customizable workflows. I found no public information on a documented risk methodology, inherited protection needs across asset relations, or incident workflows with statutory reporting clocks — dependency visualization is shown, inheritance is not.
SECJUR Digital Compliance Office (ISMS)
What's evidenced for the ISMS side is a step-by-step self-service assistant, central task management and a policy generator — but the evidence is completely silent on asset inventory, risk methodology, treatment tracking, protection-need inheritance and any incident workflow with NIS2 clocks. For an ISMS product, that silence on the risk backbone is the information, so I can't place it above the checklist tier.