top of page
port.png
gladius_6_logo_transparent_2.png

Gladius 6.0 is a Governance, Risk Management and Compliance (GRC) information system delivered as a fully customizable corporate portal. It enables organizations to implement and manage required processes while ensuring accountability and traceability in meeting requirements such as NIS2, the Polish National Cybersecurity System Act (KSC), GDPR and ISO 27001.

The system also supports the role of a shared services center responsible for providing IT services, governance, risk and compliance services across a group of organizational units.

  • Asset and Relationship Management - CMDB

  • Service Desk

  • Service-oriented approach and Access Management

  • Risk analysis: from assets and service to process

  • GDPR: Authorizations and processing activities

  • Document management - knowledge database

  • Incident and data breach management

image_edited.jpg

Does compliance in your organization  truly extend beyond the compliance, DPO, or IT department?

 

Gladius engages the entire organization in processes that affect compliance, including risk, access, asset, incident, business continuity and document management. It translates formal requirements into specific actions for process owners, managers, administrators and employees. 

Responsibility is assigned to the appropriate management levels, where decisions are made and where the organization’s actual risk exposure is shaped.

Do you want to manage compliance at the process level?

Gladius enables organizations to align business processes with processing activities, using GDPR requirements as a practical framework for describing how work is performed across the organization. 

Each process can be linked to relevant data, assets, services, access rights, documents, risks and responsibilities. As a result, requirements that the organization is already expected to meet become the foundation for structured management of compliance, security and accountability.

image.png
image.png

Do you manage compliance in connection with assets, services and incidents?

Effective cybersecurity management requires a clear understanding of assets, services, dependencies, incidents and users. Gladius combines a GRC approach with key ITSM capabilities, including a CMDB, service catalogue and Service Desk. 

This enables organizations to assess compliance in the context of their actual infrastructure, operational dependencies and real-world incidents.

Can you demonstrate not only who has access, but also why they should have it?

Gladius supports access management by linking permissions to an employee’s role, responsibilities, competencies, relevant documents and GDPR authorizations. Access is not treated merely as a technical assignment of privileges, but as a controlled decision-making process. 

The system helps organizations demonstrate who has access, the basis on which it was granted, and whether the applicable organizational requirements have been met.

image.png

Do you want to manage risk the way your organization actually operates - across multiple layers, through processes and in the context of real-world events?

Gladius goes beyond the traditional multiplication of likelihood and impact. It combines the process-based approach of ISO 31000 and ISO/IEC 27005 with Bow-Tie logic and more informed risk modelling, aligned with concepts used in methodologies such as FAIR.

It enables organizations to analyse infrastructure risks, process risks and risks to the rights and freedoms of individuals as an interconnected system of dependencies

Do you manage centrally delivered IT services for multiple organizational units?

Gladius reflects an operating model in which one entity acts as an IT service provider for multiple organizational units within a larger organization. It enables organizations to maintain a service catalogue, assign service recipients, link services to assets, processes, access rights and contracts, and distribute responsibilities between the shared services centre and the units using those services. 

This is particularly important for local government organizations, corporate groups and other organizations with distributed structures.

About us

We are the developers of Gladius 6.0, a Governance, Risk Management and Compliance (GRC) information system. 

The unique value of our solution lies in its practical and holistic approach to organizational management. We believe that the time and resources devoted to demonstrating compliance should not serve merely to satisfy formal requirements. They should also help organizations improve the efficiency of operational processes, clarify responsibilities, strengthen accountability and build genuine resilience and security. 

Gladius 6.0 was designed on the basis of many years of professional experience and practical expertise in IT, information security, service management and project management.

 

We develop the system in close cooperation with our clients. Their needs, experience and day-to-day challenges are the key factors shaping the direction of the product’s development. As a result, Gladius 6.0 is more than a tool for record-keeping and reporting. It is a platform that supports the organization in a consistent, practical way, aligned with its actual processes and operational needs.

gladius_6_logo_transparent_2.png
MS_3_edited.png

For many years, I have worked at the intersection of technology, information security and organizational management. I have built my professional experience across all levels of responsibility - from service technician and systems administrator to Data Protection Officer and director. This allows me to view organizations not only from the perspective of systems and technology, but also in terms of processes, responsibilities, risk and compliance. 

In practice, I have implemented management systems certified for compliance with ISO 27001, ISO 27701 and ISO 20000. I have consistently sought to align formal requirements with the organization’s actual operational needs. This experience has shaped an approach in which security is not treated as an addition to the organization’s activities, but as an integral part of its efficient, responsible and resilient operation.

My expertise is supported by certifications in management methodologies including ITIL, PRINCE2, M_o_R and MSP, as well as in auditing management systems for compliance with ISO 27001:2023-08 requirements.

 

Marek Staniewski

President of the Management Board

KONTAKT

Dziękujemy za przesłanie wiadomości.

Rigil sp. z o.o.

KRS: 0000371670

REGON: 34084041000000

NIP: 5542897880

ul. Centralna 2T

86-031 Osielsko k/Bydgoszczy

E-mail: biuro@rigil.com.pl 

Tel.: +48 796 375 433

contact

© 2025 by Rigil sp. z o.o. 

bottom of page