Skip to main contentSkip to navigation
One platform. Three modules. Turn risk into an advantage.

Risk management, internal audit and compliance on one platform

RiskTech helps Vietnamese enterprises manage work, data and evidence on a single platform. Deploy each module independently and connect them when you need to.

Reference standards
GIAS 2024
Internal audit
ISO 19011
Management system audits
ISO 37301
Compliance management
ISO 31000
Risk management
Three business modules

One module to start with. One platform to grow into

Take a quick look at each module below. Every module has its own page with the full picture of its features and how it runs.

Training programmeIn-house training on risk, audit and complianceThe Starlent training platform: assign courses, track progress and report results for the teams running all three modules.See the programme
MODULE 01

Compliance management

Compliance Management

Manage every compliance obligation in a single register, from the source regulation through to assessed evidence.

  • Consolidates obligations from four sources: law, contracts, internal policy, standards
  • Links obligations to controls so gaps surface by themselves
  • Periodic evidence assessment with five result levels
  • The person who submits evidence is never the one who assesses it
  • A regulatory change immediately shows which obligations are affected
4-step compliance check · ISO 19011
See details →
Overview screen · open the full module page
Shared foundation— whichever module you switch on runs on this
Risk register and map
One risk catalogue for the whole organisation
Control library
Controls linked to risks and obligations
Document and evidence store
Versions, validity, source citations
Role-based permissions
An authority matrix for every function
System audit log
Who · when · why
Multi-unit, multi-entity
Data scope follows the org structure
Assistant with citations
Switchable off — the system still runs
Built-in AI

AI assists. People decide

AI analyses data, cites its sources and offers suggestions inside each step of the workflow. Every result still needs review and approval by an authorised person.

  • Flags obligations with no matching control and suggests suitable controls
  • Warns about material risks not yet covered by the audit plan
  • Assesses how a regulatory change affects each obligation being tracked
  • All business processes keep working with AI switched off
Designed for Vietnam

Fits the way Vietnamese enterprises actually work

Terminology, forms, roles and approval flows follow how Vietnamese enterprises are organised and how their teams work.

  • Vietnamese interface and records, referencing domestic regulations
  • Flexible permissions by division, department, branch and member company
  • Processes referencing GIAS 2024, ISO 19011, ISO 37301 and ISO 31000
What to know before you choose

Is RiskTech right for your organisation?

What is RiskTech?

RiskTech is an AI-enabled GRC platform for Vietnamese enterprises, made up of three modules: compliance management, internal audit and enterprise risk management. The three run independently on one data architecture, and share the risk register, control library and evidence repository once you switch linking on.

Who is it for?

Executive leadership and the board, internal audit, risk management, compliance and legal. Business units take part through a dedicated portal to submit evidence and respond to findings, seeing only their own workload.

What problems does it solve?

Three things enterprises usually do by hand: tracking compliance obligations and evidence, running internal audit files with proper review, and maintaining a risk register tied to monitoring indicators. RiskTech puts all three on one data model with full traceability.

How does the AI work?

AI is an assistive layer inside the workflow, not an automatic decision layer. Every suggestion carries source citations, respects the user's permissions and needs approval by an authorised person. With AI switched off, the system still runs the full process.

How is it rolled out?

Start with the module you need most — buying the whole platform is not required. When the organisation is ready, switch on another module and link the data; nothing already entered has to be redone.

What you get

Less time reconciling, easier evidence retrieval when it matters.

01

One consistent source of data

Risks, controls and evidence are shared across modules, so there is no more reconciling spreadsheets and data versions.

02

Full traceability, clear permissions

Evidence providers and assessors hold separate permissions. Every change is recorded for later review.

03

Nothing falls through the cracks

Work is assigned by role with deadlines and overdue alerts. Every blocker is recorded together with its cause.

04

Reports ready for the board

Reports and dashboards are generated straight from live data, with no spreadsheet consolidation.

Photo of the RiskTech team or an enterprise meeting room — landscape
Three lines of defence
One set of data, three independent points of view.
Platform architecture

Deploy independently. Connect when you need to.

The three modules are built independently on one data architecture. When the organisation needs them connected, that is configuration — not a rebuild.

SHARED FOUNDATION
Risk register · Control library · Evidence store
MODULE 03
Risk management
Material risks steer the annual audit plan
MODULE 02
Internal audit
Findings → compliance gaps
Material obligations → audit scope
MODULE 01
Compliance
Compliance risks → risk register
Risk appetite → check priority

Dashed connectors: the three modules are running separately, each keeping its own data. Press Linked platform to see how data flows once linking is on.

Compliance management
Runs on its own for the compliance function
Its own obligation register and controls
Its own permissions and unit scope
No dependency on the other modules' data
Internal audit
Runs on its own for the audit function
Its own risk map and control library
Annual plan built in-house
Dedicated portal for audited units
Risk management
Runs on its own for the risk function
Risk register, monitoring thresholds, risk appetite
Board reporting from day one
Extend to the other two modules later

A common path: start with internal audit to meet audit committee reporting requirements, then switch on risk management when you need an organisation-wide risk-based audit plan.

Product videos

See each module working in practice

Leave your work email and we will send the video links for the modules you care about.

01

Compliance management

Regulation → obligation → control → evidence → report

02

Internal audit

Annual plan → engagement → workpapers → findings → remediation

03

Risk management

Objectives → register → heat map → monitoring → report

Frequently asked questions

What do you get out of the demo?

Request a demo

See how RiskTech handles a real situation from your organisation

A 30-minute demo following the module you care about and the role you hold. No data preparation needed beforehand.

  1. 01
    A 15-minute conversation — establishing scope, roles and the priority problem
  2. 02
    A role-based demo — one business flow end to end through to reporting
  3. 03
    A proposed rollout scope — which module to start with and what to prepare
Photo of a demo or advisory session with a client
Contact us directly
ceo-office@risktech.asia0938 482 239
62A Huynh Man Dat, Thanh My Tay Ward
Ho Chi Minh City

We respond to every request within one business day.

Track how risk moves, without waiting for the reporting cycle

Start with one module. Tell us what your organisation needs and we will build the demo around the role you hold.