Compliance for consulting and advisory firms

Your clients’ compliance, with a complete trail

For compliance and data protection consultancies, advisory firms and outsourced data protection officers. Each client’s channel, controls and evidence as records with deadlines, and your own sales work in the same place.

  • Every client with its records and deadlines
  • Periodic controls with evidence and signature
  • Proposals, contracts and hours in the CRM

Who it is for

Is it right for your company?

For firms that manage compliance for other companies, and for the in-house team that runs it:

  • Compliance and data protection consultancies
  • Advisory firms that run their clients’ reporting channels
  • Outsourced data protection officers
  • Heads of internal reporting systems
  • Compliance departments at mid-sized companies

Not on the list? attendo can be set up for any line of business, with your document types, your fields and your vocabulary.

The challenges

Several clients, each with its own deadlines

A compliance consultancy sells peace of mind. And peace of mind depends on never missing a deadline for any client.

  • Acknowledgment due

    Channels that are just inboxes

    Each client has its reporting channel, and many are just an email address. Acknowledgment and response deadlines live in a shared calendar.

  • Control overdue

    Controls scattered across spreadsheets and email

    Periodic controls, license and insurance renewals, policy acknowledgments. Every client in its own spreadsheet and every reminder in someone’s inbox.

  • No evidence

    Evidence that has to be rebuilt

    When an audit or a regulator asks, people dig through emails, attachments and versions to show what was done, who did it and when.

How attendo solves it

Each challenge, with the modules that solve it

They are modules of the same platform: you turn on the ones you use, and they all work on the same record.

The channel, with its deadlines tracked

A reporting channel with anonymous or named reports, records restricted to administrators and the acknowledgment deadline flagged. How each client company’s channel is organized is defined with you during onboarding.

Controls with a date, an owner and evidence

Each control is a recurring document with its checklist, owner and attached evidence. Policies are signed with attendo eSign, and renewals alert you before the due date.

Evidence with a trail, and your firm in order

The timeline keeps every step with its date and author, and the fingerprint of documents and events is stored on a blockchain. Attachments are scanned for malware and you can copy everything to your own S3 storage. In the CRM you manage proposals, contracts and hours per client.

Customer record with tax details, industry, language and contact
Each client’s record, with everything open for them.

A typical day · example

A report to a client’s channel

From an anonymous message to a closed record, with every step logged. Example scenario, with made-up data.

  1. Step 1

    The report comes in

    Someone at the client company writes anonymously. A record opens, restricted to administrators, and the acknowledgment clock starts.

  2. Step 2

    Acknowledged on time

    attendo flags the acknowledgment deadline. The consultancy replies from the record and the reply is saved with its date.

  3. Step 3

    Assessed and investigated

    The admissibility checklist records why the report is admitted. Tasks, notes and attachments stay on the timeline.

  4. Step 4

    Closed with a trail

    The resolution is recorded and the record keeps every step, with its blockchain fingerprint, for whenever someone asks.

marIA, the attendo AI

marIA at a compliance consultancy

It helps with the documentation work. The judgment is yours.

  • Searches your procedures

    Upload your policies, procedures and templates. marIA answers your team using that documentation.

  • Ask about your controls

    “Which controls are due this month, and for which clients?” It answers with your data and shows the query.

  • With the provider you choose

    If data must not leave Europe, you can use Scaleway or your Microsoft 365 Copilot. And AI can be switched off module by module.

What it does not do: It does not assess reports or decide whether a record is admitted.

Honesty

What attendo does not do

Better to know before the demo. And if your case calls for another tool, we will tell you.

  • Not a GRC suite

    Risk matrices, regulatory libraries and control mapping are not in attendo. If you need them, a GRC suite is a better fit.

  • The compliance panel is about your team

    It measures whether your team completes its tasks and deadlines, not your clients’ regulatory compliance.

  • No certifications of its own

    attendo does not hold ISO 27001 or ENS. For your clients that may be an objection, so it is better to raise it early.

  • The law is applied by a professional

    attendo is the tool. The system owner, the channel policy and the investigation are provided by each organization.

Regulations

Regulations you can document

The obligation is yours and your engineer’s or advisor’s. attendo helps you document every inspection and every step, with its date, its author and its evidence.

  • Law 2/2023 (Spain) · whistleblower protection

    Channel acknowledgment and response deadlines and the log of every report, as records with their trail.

  • EU Directive 2019/1937 · whistleblowing

    The internal reporting channel and its confidentiality, documented record by record.

  • ISO 37301 · compliance management systems

    Periodic controls, their evidence and their owners.

  • ISO 37002 and UNE 19601 (Spain)

    Whistleblowing management and criminal compliance, with their documentation and records.

Compare and calculate

Before you decide

An honest comparison and a calculator with its assumptions in plain view.

Frequently asked questions

Frequently asked questions

Is it a whistleblowing channel or something more?

Something more. The whistleblowing channel is one module, and here it works alongside controls, evidence and the management of your own firm. If you are after compliance for your own company, not your clients’, see attendo Compliance.

Can I manage several clients?

Yes. Each client is a record with its reports, controls and contracts. How access and each client’s channel are separated is defined with you during onboarding.

Does it track legal deadlines?

It flags the acknowledgment deadline, and a flow can alert you before other due dates. What the law requires in each case is confirmed by your legal team.

How do I collect policy acknowledgments?

With an acknowledgment form or checklist, or with an attendo eSign signature. Each acknowledgment is saved with its date and author.

Where is the data?

In the European Union: the SaaS service runs in a European region of AWS, OVHcloud or Google Cloud, with a dedicated database for your company, and you can copy your data to your own S3 storage. As a project, attendo can also be installed on-premise, on your own infrastructure.

Does attendo hold certifications?

No. attendo does not hold ISO 27001 or ENS. We walk you through the actual security controls on a technical call and on the security page.

Request a demo

Tell us how you manage your clients

We will show you attendo with a channel, a periodic control and a proposal like yours. If your case calls for a GRC suite, we will tell you. Would you rather try it yourself? Request a trial account and we will set it up with your case.

  • With your operation, not a generic demo
  • A real person from our team replies
  • No cold calls afterwards

Would you rather talk first?

Which area do you want to see in the demo?

With your work email we prepare the demo around your case.

In one or two sentences.

If you chose Maintenance (CMMS)

If you chose Field work (Field Service)

If you chose Facility Management

If you chose any other area

Only if you would rather we call you.

Data protection. Controller: AxisOne Group SL. Purpose: preparing the demo you request and replying to you. Legal basis: your consent and the request you make. Recipients: we do not disclose your data; Cloudflare (website) and Brevo (email notices and confirmation) process it on our behalf. Rights: access, rectification, erasure, objection, restriction and portability, at privacy@attendo.me. More information in the privacy policy.

What happens when you send it. Someone from our team reads what you tell us and writes to you to agree on a time for the demo. Our hours: Monday to Thursday 9:30 AM to 6:30 PM and Friday 9:30 AM to 2:30 PM, Spain time.