Built by compliance experts. Designed for operators.
domainGRC was founded by Jen Bertelli, alongside Technical Founding Advisor Josh Siegel. Together they saw a gap in the GRC tooling market: every available platform was built by engineers reading framework PDFs, not by practitioners who had actually run compliance programs at scale. Jen had spent nearly two decades operating those programs, including building the information security and compliance program for Iron Mountain Data Centers from the ground up. Josh brought a career of building and scaling enterprise SaaS in regulated industries. The platform you see is what a senior compliance practitioner would build for herself: a methodology she had refined over decades, productized into software, with the engineering depth and AI capability to make it real.
domainGRC is a continuous compliance platform with a tier ladder of expert services attached. Together they form Compliance Business Process as a Service (BPaaS): software you can operate yourself, plus the practitioners to help when you need them. We don't hand you a tool and wish you luck, and we don't lock you into long-term consulting. We meet you wherever you are, from your first SOC 2 to a fully outsourced compliance function. We’re a small, senior team of compliance practitioners and engineers who’ve run this work before, here to share our methodology and help you build a compliance program that holds up against the real-world threats your business faces.
We run our own compliance program on domainGRC.
We’re operating our own SOC 2 program inside domainGRC today. When we earn the certification, our public trust center will be built on the same platform our customers use.
domainGRC was founded by compliance practitioners and technology leaders who have spent decades operating regulatory programs and building software inside highly regulated organizations. The platform reflects what they wished they had: a continuous compliance system that compounds across audits, rather than a checklist that resets every cycle.
Jennifer Bertelli
Founder & CEO
Jen brings almost 20 years of experience designing, implementing, and operating compliance, privacy, and risk programs for highly regulated organizations, with deep expertise across cloud services, data centers, and healthcare technology.
Prior to founding domainGRC, she held senior compliance leadership roles at SameSky Health, MedAdvisor Solutions, Iron Mountain Data Centers, and HMS Eliza.
Jen founded domainGRC to replace the dominant model of compliance with what she calls continuous compliance: programs anchored in real risk reduction rather than check-the-box documentation.
Alongside leading the company, Jen serves as a Fractional Chief Compliance Officer for high-growth startups and a strategic advisor to large global enterprises.
Josh Siegel
Technical Founding Advisor
Josh is a technology and product executive with more than two decades of experience building and scaling enterprise SaaS platforms in regulated industries.
As Technical Founding Advisor to domainGRC, Josh helps shape the company’s technology architecture, AI strategy, and product-led growth model.
Alen Pulido
Head of Engineering
Alen is a full-stack engineering leader with over 15 years of experience designing, leading, and implementing scalable SaaS platforms.
At domainGRC, Alen leads engineering execution across the company’s platform, designing the cloud architecture, application infrastructure, and data systems that power the product.
Brianna Frost
Head of Product
Brianna brings 15+ years of experience leading product strategy and platform development across healthcare technology and enterprise data systems.
At domainGRC, Brianna leads product strategy for the company’s compliance platform, working closely with engineering and leadership to productize real-world compliance workflows.
Lucas Merrow
Strategic Advisor
Lucas Merrow is an experienced technology founder and executive with a track record of building and scaling healthcare technology companies.
At domainGRC, Lucas provides strategic guidance on company building, enterprise SaaS growth, and navigating complex healthcare and regulated markets.