Complex processes automated.

AI solutions for compliance, legal ops, and GRC. GDPR-compliant, in days not months.

ics-mapping.lexbeam.com
ICS Mapping Agent — From risk catalog to control matrix
0

Days to first prototype

0+

Tools built end-to-end

0

Infrastructure required

Manual processes cost time. Every day. Over and over.

01

Hours instead of minutes

Reviewing documents, cross-checking regulations, writing reports - your best people spend their time on tasks a machine handles in seconds.

02

Knowledge in heads, not in systems

When that one person is sick, the process stops. Knowledge lives in heads and spreadsheets instead of systems that work for everyone.

03

New regulations, same team

EU AI Act, NIS2, DORA, HinSchG - requirements are doubling, but your team isn't growing. The gap gets wider every year.

Services

From the lab. Try them now.

Every solution is a working AI system. Not a mockup, not a slide deck. Just try it.

ics-mapping.lexbeam.com
ICS Mapping Agent

Services

What we automate for you

From policy assistants to risk classification to anonymous reporting systems. Every solution is built for your specific use case.

AI systems that know your internal policies and answer employee questions instantly - with exact source references and automatic escalation.

e.g. Employee asks: 'Can I engage this vendor?' - System checks policy and responds in seconds.

Automatic classification of your AI systems under the EU AI Act: Prohibited, High-Risk, Limited, or Minimal - with specific articles and obligations.

e.g. 'Is our chatbot high-risk?' - System classifies under Art. 6 EU AI Act with reasoning.

Automatically link risk catalogs and control libraries. Coverage heatmaps, gap analysis, and remediation suggestions in minutes, not weeks.

e.g. 200 risks, 150 controls - System creates coverage matrix and shows gaps in a heatmap.

From investigation report to structured action plan: extract findings, assign owners, set deadlines - automatically.

e.g. Audit report with 15 findings - System extracts, prioritizes, and creates action plan with deadlines.

Two-sided reporting system: anonymous whistleblower interface plus ombudsperson dashboard with risk assessment and case management.

e.g. Anonymous tip received - System creates case, assesses risk, notifies ombudsperson.

AI systems on your website that qualify inquiries, present matching services, and schedule appointments. 24/7, without staffing overhead.

e.g. Website visitor asks about ISO 27001 - System qualifies and suggests matching package.

Automatically process incoming requests via email: extract data, schedule appointments, send confirmations. No more manual copy-pasting.

e.g. 50 examination requests via email - System extracts data and schedules appointments automatically.

Your problem, our solution. We build tailored AI systems for your specific use case - in days, not months.

e.g. Your individual use case - we build the matching solution in just a few days.

Approach

From idea to solution

No months-long projects. No consultant-speak. Working results - fast and pragmatic.

01

Understand

1 call

What is your specific problem? Which processes cost you time? Where are the bottlenecks? One conversation is enough.

02

Prototype

2-5 days

Within days, a working solution addresses your use case. No specification battles, no waterfall planning.

03

Validate

1-2 weeks

You test the prototype with real data and real users. Feedback flows directly into the next iteration.

04

Integrate

As needed

The solution is embedded into your existing landscape - as a standalone application, widget, or API. It adapts to you, not the other way around.

Automation
Regulation
EU AI Act Art. 6High-risk check
Control
AI risk classificationAutomated
Task
Conformity assessmentDeadline: Q2 2026
Owner
Compliance teamEscalation: CTO
Status
In progress67% complete
Fully automated
4.2s
10+ years in Compliance & Legal OpsLL.M. Business LawBig 4 & DAX backgroundDozens of tools built end-to-end

About

Domain expertise meets Software Engineering

Over 10 years in Compliance, Risk Management, and Legal Operations. From Big 4 consulting to DAX corporations to international IT companies. Every tool I build for clients, I've used in practice myself first.

I know both sides: the domain requirements and the technical implementation. For you that means: no briefing ping-pong between business teams and developers. One point of contact who understands your problem and builds the solution himself.

Working prototypes, not PowerPoints

See in days what others promise in months.

DACH regulation built in

GDPR, EU AI Act, HinSchG, BetrVG - the regulatory framework is part of the solution.

Pragmatic, not dogmatic

The technology that fits. No vendor lock-ins, no ideology.

Partnership-first

I complement your expertise with execution power. Not a competitor - I make you stronger.

LL.M. Business LawBig 4 GovernanceDAX Risk & ComplianceDozens of tools end-to-endDACH + EU regulationFull-stack development
Werner Plutat - Legal Engineer & Founder

Werner Plutat

Legal Engineer & Founder

For consulting partners

You advise your clients in GRC, Compliance, or Internal Audit? I deliver the technical implementation. Your expertise, my automation - your clients benefit from both.

Prototypes for your client projects in days
White-label available - your name, my technology
No competitive risk - I don't advise, I build
Reference projects on request
Discuss a partnership

Contact

Let's talk

Tell me about your most demanding process. I'll honestly tell you if and how I can help. No strings attached.

info@lexbeam.com
Düsseldorf, Germany
LinkedIn

Response within 24 hours. No spam, promise.