High-Level Overview
Formalize is a Denmark-based compliance software company that provides an all-in-one platform for governance, risk, and compliance (GRC), specializing in automating workflows for EU regulations like GDPR, NIS2, DORA, and ISO 27001.[1][2][3][4] It serves over 8,000 organizations, including SMEs, consultancies, and law firms, covering more than 5 million employees, by streamlining document management, risk/incident handling, supplier audits, and whistleblower reporting to replace inefficient tools like Excel.[1][2][3][4] With 51-200 employees and revenue between $10M-$50M, Formalize demonstrates strong growth, evidenced by $16M in Series A funding (March 2024) and €30M in Series B (October 2025), fueling European expansion.[1][2]
Origin Story
Founded in 2021 in Middle Jutland, Denmark (originally as Whistleblower Software), Formalize emerged to address the growing complexity of compliance for businesses navigating EU regulations.[1][4][5] CEO and co-founder Jakob Lilholm leads the team, focusing on user-friendly, secure software that automates GRC processes from the start.[2][4] Early traction came from its whistleblower platform, evolving into a full compliance operations system; pivotal moments include securing €15M ($16M) Series A in March 2024 and rapid adoption by thousands of organizations, culminating in the €30M Series B in October 2025 co-led by Acton Capital and BlackFin Tech.[1][2]
Core Differentiators
- Comprehensive Automation: Handles RoPA, data subject requests, TIAs, DPIAs, supplier audits, risk/incident management, and whistleblower cases for standards like SOC2, NIS2, ISO 27001, and GDPR in one platform, replacing messy documentation and spreadsheets.[3][4]
- User-Friendly Tools: Features flexible form/audit builders, customizable dashboards for reporting to stakeholders, and top-rated support, ensuring ease for compliance professionals.[3][4]
- Scalable Tech Stack: Leverages AWS, CloudFront, Open Graph, and AI-driven workflows for security, adaptability to regulatory changes, and efficiency across SMEs.[1][2][5]
- Proven Scale and Trust: Trusted by 8,000+ organizations and 850 consultancies/law firms; appointed as Spain's national whistleblowing authority, with competitive edge over rivals like Navex WhistleB and EQS Group.[1][2]
Role in the Broader Tech Landscape
Formalize rides the wave of intensifying EU regulatory demands (e.g., GDPR, NIS2, DORA), where compliance shifts from optional to essential amid rising cyber threats and data privacy scrutiny.[2][4] Timing is ideal as SMEs face resource constraints in adapting to these frameworks, with Formalize's automation turning regulatory burdens into competitive advantages via AI and scalable workflows.[2] Market forces like digital transformation and enforcement actions favor RegTech leaders; Formalize influences the ecosystem by enabling thousands of businesses to build resilience, partnering with consultancies, and expanding across Europe.[1][2][5]
Quick Take & Future Outlook
Formalize is primed for dominance in European SME compliance, leveraging its €30M Series B to accelerate AI enhancements and market penetration amid evolving regs like NIS2.[2] Trends such as AI automation and stricter enforcement will propel growth, potentially expanding to new regions or verticals while deepening its InfoSec ecosystem. Its influence may evolve from whistleblower specialist to GRC market leader, simplifying compliance as a core business enabler—just as it began by tackling documentation chaos for millions of employees.[1][2][4]