Silver Bullet Risk
Silver Bullet Risk (SBT d.o.o.) is a Ljubljana-based risk management software and consulting firm serving regulated mid-sized organizations in Slovenia, Croatia, and the SEE/DACH region with NIS2, ISO 27001, ESRS, and critical infrastructure compliance needs.
- Company typePrivate
- Founded2008
- HeadquartersSlovenia, Slovenia
- Headcount1–10
- GTM typeB2B
- OfferingSoftware
What Silver Bullet Risk does
Silver Bullet Risk (legal entity SBT d.o.o.) is a Slovenia-based enterprise risk management vendor founded in 2008 by Igor Zgonc and headquartered in Ljubljana. The company serves regulated mid-sized and larger organizations in Slovenia, Croatia, and the broader SEE/DACH region, helping them comply with European frameworks including the NIS2 cybersecurity directive, ISO 27001:2022, the Slovenian Critical Infrastructure Act (ZKI-1), and the ESRS sustainability reporting standards. Its offering combines advisory consulting, role-based training programs, and a proprietary digital platform to replace spreadsheet-based risk management with a structured, auditable workflow.
The company's core technology is the SBR Platform, a purpose-built integrated risk register that connects information assets, risks, controls, and incidents across business, information security, sustainability, and corporate risk domains in a single system. The platform provides real-time dashboards, cross-domain reporting, and compliance mappings to NIS2, ISO 27001:2022, ESRS, and ZKI-1, reducing report preparation from days to under an hour according to company-reported outcomes. Leadership includes COO Jure Habbe, author of the first comprehensive Slovenian handbook on information risk management, and product manager Amadej Jankovič, with Božo Recko serving as external technical consultant. The SBR Platform is also a key technology in the EU-funded ENDURANCE consortium for critical-infrastructure security.
Silver Bullet Risk operates a consulting-led, direct enterprise sales model with quote-based annual subscription pricing for the platform, supplemented by professional services revenue from regulatory implementation consulting and training programs. Distribution is regional and direct, with no visible channel or reseller network. The company markets through content (blog, LinkedIn, X), industry events including CEBIT, and European project participation such as ENDURANCE. Silver Bullet Risk is privately held, has not raised external funding rounds per disclosed data, and operates with a small core team of approximately four to five personnel.
Silver Bullet Risk firmographics
Firmographics- Name
- Silver Bullet Risk
- Legal name
- SBT d.o.o.
- Website
- https://silverbulletrisk.com
- Company type
- Private
- Founded year
- 2008
- Operating status
- Operating
- Headcount range
- 1–10 employees
- Short description
- Silver Bullet Risk (SBT d.o.o.) is a Ljubljana-based risk management software and consulting firm serving regulated mid-sized organizations in Slovenia, Croatia, and the SEE/DACH region with NIS2, ISO 27001, ESRS, and critical infrastructure compliance needs.
- Ownership category
- akta.pro rank
Silver Bullet Risk industry classification
Industry- Product category
- Enterprise Risk Management Software
- akta.pro primary industry
- Insider Threat Program Design & Risk Assessments (BPAKADAM)
Keywords
Where Silver Bullet Risk is headquartered
LocationHeadquarters
- HQ city
- Slovenia
- HQ country
- Slovenia
- HQ region
- Europe
Offices1 record
Markets served
Silver Bullet Risk business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations
Revenue model
- Risk Management Software Platform: SaaS-based platform for comprehensive risk management, providing ongoing subscription revenue
- Consulting Services: Advisory services for NIS2, ISO 27001:2022, ESRS and Critical Infrastructure Act implementation
- Training Programs: Role-based and level-adapted education programs for employees on risk management topics
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Custom enterprise pricing based on organization size and requirements |
Go-to-market motion2 records
Distribution channels2 records
Marketing channels5 records
Silver Bullet Risk product offering
Product offeringCore offering
Silver Bullet Risk provides a proprietary enterprise risk management software platform (SBR Platform) that digitally connects information assets, risks, controls, and incidents into a unified risk register across business, information security, sustainability, and corporate domains. Alongside the platform, the company sells tailored advisory services for NIS2, ISO 27001:2022, ESRS, and Critical Infrastructure Act compliance, plus role-based training and education programs for client teams.
Product overview
Silver Bullet Risk offers a comprehensive risk management portfolio consisting of a core software platform (Silver Bullet Risk Platform) supplemented by consulting services and training/education programs. The platform enables organizations to consolidate risk registers from various domains (business, information security, sustainability, operational safety), link them with assets, measures, and incidents, and generate automated reports for management, audit, and regulatory purposes. The consulting services guide organizations through implementation of regulatory requirements (NIS2, ISO 27001:2022, ESRS, ZKI-1), while training programs build organizational capabilities for risk management.
Differentiator
Problem solved
Functional benefit
Brands
- SBR Platform: The Silver Bullet Risk digital platform for comprehensive risk management, providing clear, comparable, and holistic insight into risks and loss events
Products and services
- SBR Platform (Silver Bullet Risk Platform) A modern digital risk management software platform that provides transparent, comprehensive oversight of risks and loss events. It connects key organizational functions, encourages collaboration, and creates space for new opportunities by linking risk registers from different domains with assets, measures, and incidents. Targeted at regulated organizations seeking to replace spreadsheet-based risk management and comply with NIS2, ISO 27001:2022, ESRS, and the Critical Infrastructure Act.
- Regulatory Compliance Consulting (Svetovanje) Tailored advisory services guiding organizations through implementation of regulatory requirements, specifically NIS2, ISO 27001:2022, ESRS (European Sustainability Reporting Standards), and the Critical Infrastructure Act (ZKI-1). Delivered by domain experts to regulated organizations in Slovenia, Croatia, and the broader DACH region.
- Risk Management Training Programs (Izobraževanja) Role-based and level-adapted education programs for client employees covering business, information security, sustainability, and corporate risk management topics. Designed to build organizational risk capability and complement the SBR Platform deployment.
Quantifiable outcome
- Report preparation time reduced from nearly a week to under one hour
Companies that use Silver Bullet Risk
Customer profileSegments3 records
Ideal customer profiles2 records
Silver Bullet Risk technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Feature5 records
Silver Bullet Risk partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- ENDURANCE ConsortiumcoreThree-year European initiative bringing together 23 partners from 7 countries to strengthen critical infrastructure security and resilience. Silver Bullet Risk platform is one of key technologies, with the team leading work packages WP7 and WP8 for service development, contributing to NIS2 and CER directive compliance management.
Scale indicators2 records
Recent moves5 records
Expansion highlights5 records
Silver Bullet Risk competitors and assessment
Company assessmentDirect peers
- LogicGate: LogicGate's Risk Cloud is a no-code GRC workflow platform covering risk registers, controls, incidents, and compliance — directly overlapping Silver Bullet Risk's integrated risk register and compliance-mapping core. Targets mid-market and enterprise regulated customers, the same buyer profile SBR serves.
- MetricStream: MetricStream is an established enterprise GRC platform offering integrated risk management, regulatory compliance, and audit/controls capabilities. Comparable to SBR's multi-domain risk coverage (business, information, sustainability, corporate) and similar focus on regulated industries.
- Riskonnect: Riskonnect provides ERM, GRC, and risk-management software for regulated and enterprise customers with integrated risk register and reporting dashboards. Closely comparable product/scope to SBR's platform, though at significantly larger scale.
- Resolver (now Diligent ERM): Resolver is an integrated risk and compliance platform with risk register, incident, audit, and regulatory compliance modules — directly overlapping SBR's functionality for regulated mid-market and enterprise customers.
Broad incumbents
- RSA Archer: RSA Archer is an established enterprise GRC platform covering operational risk, regulatory compliance, and incident management. A long-standing incumbent in the integrated risk management category that competes for the same regulated buyer segment as Silver Bullet Risk.
- ServiceNow Governance, Risk, and Compliance: ServiceNow's GRC suite is an integrated risk and compliance module within the broader Now Platform, serving large enterprises. Overlaps with SBR's compliance mapping and risk-register capabilities but as part of a much wider portfolio rather than a focused ERM niche.
- SAP GRC: SAP's GRC and risk-management solutions provide controls, audit, and risk functionality tightly integrated with the SAP ERP ecosystem. Overlaps with SBR's information-security and operational risk coverage but is positioned for SAP-centric large enterprises.
- OneTrust: OneTrust's Trust Intelligence Platform covers GRC, ESG, and regulatory compliance use cases that overlap with SBR's ESRS and ISO 27001 mapping capabilities. Operates as a broad governance suite rather than a specialized ERM platform.
- Diligent: Diligent (which absorbed Galvanize/ACL and Resolver) offers board, GRC, and ESG risk software including integrated risk management modules that overlap with SBR's enterprise risk register and reporting capabilities for large and regulated customers.
Emerging players
- Vanta: Vanta automates security and compliance workflows (SOC 2, ISO 27001, NIS2-adjacent) for fast-growing companies — partial overlap with SBR's ISO 27001/NIS2 compliance mapping focus but oriented toward tech/startup customers and continuous-controls monitoring rather than broad ERM.
Market position
Strengths4 records
Weaknesses4 records
Competitive moat4 records
Key risks6 records
Key highlights6 records
Customer concentration
Silver Bullet Risk social profiles
Digital presenceSilver Bullet Risk financial estimates
Financial estimateRevenue estimate
Valuation estimate
Silver Bullet Risk leadership team
Management profileNumber of profiles
Profiles4 records
Silver Bullet Risk funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Silver Bullet Risk M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Silver Bullet Risk
What does Silver Bullet Risk do?
Silver Bullet Risk provides a proprietary enterprise risk management software platform (SBR Platform) that digitally connects information assets, risks, controls, and incidents into a unified risk register across business, information security, sustainability, and corporate domains. Alongside the platform, the company sells tailored advisory services for NIS2, ISO 27001:2022, ESRS, and Critical Infrastructure Act compliance, plus role-based training and education programs for client teams.
Is Silver Bullet Risk a public or private company?
Silver Bullet Risk is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Silver Bullet Risk founded?
Silver Bullet Risk was founded in 2008. It employs 1 to 10 people.
Where is Silver Bullet Risk based?
Silver Bullet Risk is headquartered in Slovenia, Slovenia, in the Europe region.
How does Silver Bullet Risk make money?
Three revenue lines are on record. Risk Management Software Platform is the primary driver. The others are consulting Services and training Programs.
Who are Silver Bullet Risk's main competitors?
Direct peers on record are LogicGate, MetricStream, Riskonnect and Resolver (now Diligent ERM). Broad incumbents are RSA Archer, ServiceNow Governance, Risk, and Compliance, SAP GRC, OneTrust and Diligent. Vanta is listed as an emerging player.
Does Silver Bullet Risk have an API?
No public API is recorded for Silver Bullet Risk.
What industry is Silver Bullet Risk in?
Silver Bullet Risk's product category is Enterprise Risk Management Software. Its primary akta.pro industry code is BPAKADAM, Insider Threat Program Design & Risk Assessments.