Frequently Asked Questions
Audit & compliance workflow
Every finding in Cortea is linked to the underlying source material, supporting evidence, and review workflow so audit and compliance teams can understand how conclusions were reached. Users can review findings, inspect referenced passages, validate outputs, and maintain full human oversight throughout the review process.
General-purpose AI tools are useful for ad-hoc assistance, but they are not designed for structured audit and compliance workflows. Cortea is purpose-built for regulated work: structured and repeatable checks, evidence-linked findings, review workflows, reproducible outputs, and audit-ready documentation. The platform is designed to support professional assurance processes, not replace them.
Teams upload reports, policies, contracts, or supporting documentation into Cortea and select the relevant framework, checklist, or review workflow. Cortea then analyses the documents, surfaces findings and inconsistencies, links outputs to supporting evidence, and organises results into a structured review workflow where teams can validate, comment on, and approve findings.
Cortea is designed for audit firms, internal audit teams, compliance teams, risk functions, and regulated organizations that need structured, explainable, and traceable AI-assisted document review workflows.
Yes. Cortea supports custom frameworks, internal standards, firm-specific review methodologies, and proprietary checklists. Many customers use internal reporting standards, review templates, and compliance workflows specific to their organisation, which can be incorporated directly into Cortea.
Cortea supports a growing range of EU audit and compliance workflows, including DORA, ISO 27001, NIS 2, ISAE 3402, SOC 2, financial reporting reviews, audit report quality review, completeness and consistency checks, and internal compliance and governance reviews. Additional frameworks and custom use cases can be supported during onboarding.
Cortea performs the initial AI-assisted document review and surfaces findings, supporting evidence, and contextual explanations. Audit and compliance teams can then review, validate, override, comment on, and approve findings directly within the workflow. All review actions are documented and traceable.
Cortea supports engagements aligned with ISA (UK), including ISA (UK) 315 risk assessment, and disclosure checks against UK GAAP (FRS 102), IFRS, and Companies Act requirements. Firm-specific methodologies can be incorporated during onboarding.
Most teams can start working with Cortea within days, not months. A typical onboarding includes workflow setup, importing frameworks or templates, and running an initial engagement together with the Cortea team. For many use cases, customers see their first results within the first week.
Yes. Cortea supports IDW Prüfungsstandards, HGB disclosure checklists, Berichtskritik (financial reporting review), and TISAX-related compliance workflows. German engagement templates and Musterberichte can be incorporated during onboarding.
Integrations & audit documentation
Cortea is designed to complement existing audit and compliance processes rather than replace them. Teams remain fully in control of review, approval, and documentation workflows while integrating Cortea into their existing operating model.
Yes. Cortea is designed to work alongside existing audit, documentation, and compliance tooling through exports, workflow integrations, and structured outputs.
Cortea supports structured exports for audit and compliance documentation workflows, including working-paper packages, findings, evidence references, review comments, and documentation outputs that can be incorporated into existing reporting systems and audit files.
Yes. Findings, evidence references, review comments, and supporting documentation can be incorporated into existing audit and compliance documentation processes and working-paper systems.
Security & compliance
Security and confidentiality are core parts of the platform. Customer data is stored and processed within the European Union or the United States, depending on your requirements, on enterprise cloud infrastructure. Cortea is designed for regulated audit and compliance environments where confidentiality, traceability, and documentation requirements are critical. Additional security documentation can be shared during the evaluation process.
No. Customer data is never used to train or fine-tune AI models.
Customer data is stored and processed within the European Union or the United States, depending on your requirements, using enterprise cloud infrastructure.
Yes. Cortea is ISO 27001 certified and operates a certified information security management system. The ISO 27001 certificate is available on request, and additional security documentation, including a SOC 2 Type II report, can be shared under NDA during the evaluation process.
Yes. Additional documentation such as security materials, architecture overviews, hosting information, and compliance documentation can be shared during the evaluation and onboarding process.
Pricing, pilots & enterprise rollout
Pricing depends on the use case, workflow complexity, document volume, and deployment model. We typically scope pricing together during an initial conversation or pilot discussion.
Most standard onboarding processes can be completed within days to a few weeks, depending on workflow complexity and any custom framework or integration requirements.
Yes. Most teams start with a pilot using real-world documents and workflows before rolling out more broadly.
Need more detail? Browse the full FAQ or speak directly with our team in a 30-minute demo
Yes. Cortea supports broader organizational rollouts and enterprise engagement structures depending on customer requirements.

