Market Opportunity
NIS2 compliance for EU SMEs — guided SaaS + automation (agentless) targets a $27.6B = 23M EU SMEs x $1,200 ACV (SME-focused security & compliance SaaS per year) total addressable market with medium saturation and a year-over-year growth rate of 15% estimated CAGR for security & compliance SaaS in EU SMEs.
Key trends driving demand: Regulatory expansion -- NIS2 broadens the scope of regulated entities across EU member states, creating urgent demand for compliance tooling.; SME SaaS adoption -- SMEs increasingly accept subscription SaaS (vs consultants) for operational tasks including compliance, lowering acquisition friction.; AI-assisted policy mapping -- LLMs make translating legal text to controls and questionnaires far faster, enabling bespoke compliance bundles.; Shift to continuous audits -- Organizations prefer continuous monitoring and automated evidence collection over point-in-time audits, favoring cloud-native GRC tools..
Key competitors include OneTrust, Drata, Secureframe, Consultancies & Big Four (PwC, Deloitte, Accenture and local boutiques).