Modulos
AI governance platform that discovers shadow AI systems and continuously checks them against EU AI Act, ISO 42001, and NIST AI RMF policies.
Visit Website ↗ + Add to Compare Claim This CompanyOverview
Modulos builds an AI governance platform that helps organizations inventory, assess, and continuously monitor the AI systems they build, buy, and use. Its Scout component is an AI assistant and discovery agent that scans cloud accounts, code repositories, and connected tools to find both sanctioned and unsanctioned (‘shadow’) AI systems in use across an organization. The platform maintains a shared control library mapped to major AI regulatory and risk frameworks, including the EU AI Act, ISO/IEC 42001, and the NIST AI Risk Management Framework, and includes runtime monitoring that tests live AI systems against defined policies, alongside financial risk quantification for AI-related exposure.
Founded in 2018 as a spin-off from ETH Zurich and headquartered in Zurich, Switzerland, Modulos positions itself at the intersection of AI governance, risk, and security. In July 2024, it became the first AI governance platform assessed as conforming to ISO/IEC 42001:2023, and the company reports being named in Gartner’s inaugural Magic Quadrant for AI Governance Platforms in 2026, an independent analyst recognition that distinguishes it from the many AI governance vendors making unverified claims of category leadership.
Modulos raised CHF 8.7 million in pre-Series A funding, announced in July 2025, from investors who have backed the company since the early stages of EU AI Act development. Its differentiator is combining AI system discovery with policy-mapped governance and live runtime testing in a single platform, aimed at CISOs, AI governance leads, and boards navigating a tightening AI regulatory environment, most notably EU AI Act enforcement that took effect in August 2026.
Innovation Matrix Assessment
Achieved the first-ever ISO/IEC 42001:2023 conformity assessment for an AI governance platform (2024) and was named in Gartner's inaugural AI Governance Platforms Magic Quadrant (2026), showing steady, credentialed progress from its 2018 ETH Zurich origins.
Gives CISOs and AI governance leads a single inventory of sanctioned and shadow AI systems plus continuous policy testing, addressing a real and fast-growing operational blind spot.
A modest CHF 8.7M raise relative to better-funded AI governance peers, but independent third-party validation via Gartner Magic Quadrant inclusion is real external evidence of market recognition.
AI governance platforms are an emerging but increasingly crowded category; Modulos is an early, credentialed entrant rather than a category-definer.
ISO 42001 conformity is a process certification rather than a measure of detection or prevention efficacy, and no independent red-team or incident-based evidence was found.
EU AI Act enforcement and expanding enterprise AI adoption make AI governance and shadow-AI discovery tooling durably relevant over the next several years.
Why CISOs Should Care
As AI adoption accelerates inside and outside official channels, Modulos gives a CISO visibility into shadow AI use and a way to demonstrate regulatory compliance before an audit or incident forces the question.
What Makes It Different
It pairs AI system discovery with a shared, framework-mapped control library and live runtime policy testing in one platform, rather than treating inventory, compliance mapping, and monitoring as separate tools.
The Matrix Verdict
55/100 — INCREMENTAL INNOVATOR
Modulos is an Incremental Innovator: genuine independent recognition (Gartner MQ, first ISO 42001 conformity) sets it apart from much of the AI governance pack, but funding scale and real-world efficacy evidence remain modest for a category moving quickly toward commoditization.
Editorial Note: Claims vs. Verified Findings
ISO 42001 conformity and the funding round are independently corroborated. The Gartner Magic Quadrant inclusion is cited from the company's own press material and has not been independently cross-checked against Gartner's original report.
Sources
Alternatives to Modulos
Adaptive Security
AI-driven platform that simulates deepfake, voice, and multichannel social-engineering attacks to train and test organizations against next-generation phishing.
Quilr
Early-stage agentic AI security startup building a 'Service-as-Software' platform to guard against human-related breaches and secure AI agent…
Zenity
Governance and security platform for AI agents and low-code/no-code development, securing agent identity, permissions and behavior across the…
Tenzai
An agentic AI penetration testing startup building autonomous 'AI hackers' to find and validate exploitable vulnerabilities at a…
Charm Security
Agentic AI workforce that investigates and intervenes on scams and fraud in real time, reading manipulation and intent…
Alice (formerly ActiveFence)
Israeli AI security company (rebranded from ActiveFence in January 2026) offering a lifecycle platform to test, guard, and…