Assets
Know what you protect and who is responsible
The asset inventory lists your important systems, cloud services, data and sites with their owner, criticality and classification. Link the risks that affect each one and see which systems need attention most.

How it works
List your assets
Add the systems, services and data that matter, with type, criticality, classification, owner and location.
Link the risks
On each asset, choose the risks from your register that affect it.
Keep it current
Set review dates, retire what you no longer use and keep the full history.
What changes for you
Start with what matters
Focus on your most important systems and data; you do not need to list every cable.
Risks on the right systems
See which risks threaten your critical assets and where vulnerabilities are.
A record over time
Retired assets stay on record, and every change is in the history.
What it covers
- NIS2 21(2)(i)
- ISO 27001 A.5.9
- ISO 27001 A.5.12
Works together with
Questions
What counts as an asset?
Hardware, software, cloud services, data, networks, sites and buildings, or anything else you need to protect.
Can members add assets?
Yes. Members see the inventory and can add assets. Changing and deleting them needs an owner or admin.
Start your inventory
Add your ten most important systems first; the rest can follow.
