Christian Lorenz
Founder & senior consulting
Focus on compliance consulting, ISO 27001, and software development. Certified ISO 27001 auditor since 2019.
Compliance as a Service for mid-market companies – pragmatic, personal, and with an experienced team.
Compaas is a consultancy for information security, cybersecurity, and IT compliance. The offering is aimed specifically at mid-market companies that must meet growing regulatory and security requirements – without having to build extensive internal structures.
Behind Compaas is an experienced team of consultants, mandated officers, and technical specialists – with one dedicated point of contact for your organisation.
Compaas builds on many years of experience in software development and compliance consulting. Since 2010, the company has supported mid-market clients on information security and IT compliance – today with a team of consultants, mandated officers, and technical specialists.
Compaas has supported a large number of clients across a wide range of industries – with a focus on the mid-market companies the offering is designed for.
The team brings together consulting, audit, and technical perspectives – including certified ISO 27001 auditors. Pragmatic and without unnecessary bureaucracy.
Christian Lorenz
Founder & senior consulting
Focus on compliance consulting, ISO 27001, and software development. Certified ISO 27001 auditor since 2019.
Industry experience
"Compaas aims to relieve organisations so they can focus on their core business – with measures that actually work in day-to-day operations."
Standards, laws, and customer requirements are becoming more complex. At the same time, qualified specialists in information security and compliance are hard to find and retain. Building internal capability costs time, money, and distracts from core business.
With Compliance as a Service, Compaas assumes specialist responsibility as an external partner: from gap analysis through pragmatic implementation to audit and certification support. Maximum effectiveness and efficiency – cost-effective and without unnecessary bureaucracy.
measures that work
lean processes, clear priorities
serious and transparent
Compaas understands mid-market companies
For companies that want to implement or further develop ISO 27001, GDPR, whistleblower protection, CRA, defence requirements, the EU AI Act, CMMC, ISO 62443, or comparable standards – with a partner who thinks along and delivers.
Get to know Compaas – personal, non-binding, and tailored to your situation.