Corporate Data Risk Score
A two-minute, self-guided assessment of how well your organisation discovers, classifies, protects and monitors its sensitive data. Get an indicative maturity score, a breakdown by area, and a prioritised action plan you can download.
How the score is calculated
The tool is transparent by design — here is exactly what it measures and how the number is produced.
1 · Data Visibility & Discovery · 20%
Whether you know where sensitive data lives across endpoints, servers, cloud and email — including shadow and stale data.
2 · Classification & Labeling · 18%
Whether data is labeled by sensitivity, and whether that classification is automated and drives downstream controls.
3 · Data Loss Prevention · 22%
Whether you control sensitive data leaving through email, web/HTTPS, cloud, removable media, printing and GenAI tools.
4 · Insider Risk & Endpoint · 14%
Whether you can detect risky user actions on endpoints — including offline — and deter and evidence insider misuse.
5 · Integrity & Ransomware · 12%
Whether you monitor the integrity of critical files and configurations and would get an early warning on ransomware behaviour.
6 · Compliance & Governance · 14%
Whether you can evidence controls for KVKK, GDPR, PCI DSS and ISO 27001, and respond to data-subject and incident requests in time.
Each answer maps to a 0–100 maturity value. A dimension's score is the average of its answers; the overall score is the weighted average of the six dimensions using the weights above. Bands: 78–100 strong, 58–77 developing, 38–57 elevated, 0–37 critical. The result is indicative guidance, not an audit.