Skip to content
deveca GRC
Product roadmap

What comes next.

Our roadmap is public. Features ship when they are productive and audit-ready — not before.

  1. In planning

    Atlassian bridge (Jira & Confluence)

    Two-way connection to Jira (incidents, actions, CAPA) and Confluence (policy mirroring). Issues, status changes and evidence flow without a media break.

  2. In planning

    Vulnerability connectors (Greenbone, OpenVAS, Nessus)

    Import scan results from Greenbone / OpenVAS, Tenable Nessus and OWASP Dependency-Check. Automatic CVE/CVSS matching onto assets and controls.

  3. Research

    CMDB sync (ServiceNow, i-doit)

    Two-way sync with ServiceNow and i-doit: assets, owners and dependencies are imported automatically — deveca adds protection needs and control mapping.

  4. Coming soon

    DORA framework

    Preconfigured control set for the Digital Operational Resilience Act in the financial sector.

  5. Coming soon

    SOC 2 Type II framework

    Trust Services Criteria as a native mapping, with crosswalks to ISO 27001.

  6. Coming soon

    PCI DSS v4 framework

    Payment Card Industry controls for payment service providers and merchants.