About

Built in Germany, open to the world.

Companies that run major enterprise systems carry enterprise-grade audit obligations, often with lean resources. RiskForge closes that gap with controls enforcement mid-sized teams can afford, and the same platform scales to the largest global enterprises. The mid-market gets special care; the largest enterprises run on the very same product. We begin with SAP and are built to extend to other ERPs.

Why we built this.

Internal audit functions at mid-market companies face a structural unfairness. They answer to the same regulatory expectations as the largest enterprises, from statutory audits under ISA to a growing stack of controls mandates, with a fraction of the headcount. The tools on offer were built for the large enterprise: multi-year GRC programmes, armies of consultants, dashboards that report last month. Meanwhile the actual risk lives in this morning's payment run.

RiskForge turns the model around. Instead of asking auditors to find problems after the fact, the platform watches every transaction as it happens, intervenes before damage becomes irreversible, and writes evidence a statutory auditor accepts without re-performing the work. The audit function stops being a rear-view mirror.

Who is behind it.

RiskForge was founded by Surender Reddy Dhonapati and is based in Berlin, with a German company formation in progress. RiskForge is built in Germany, with EU data residency, and engineered to the strictest standards, GDPR and the EU AI Act included, from the first line of code.

We are deliberately early-stage and honest about it. Design-partner customers shape the product directly and get founder-level attention in return. If you run internal audit, controlling or finance in an SAP-running company, we would like to hear how you work today.

Talk to the founder →

See RiskForge on your own processes.

A 30-minute walkthrough against realistic SAP scenarios: payment runs, journal entries, transports. No slides, just the actual product.

Request a demo