Nairobi · Pan-African GRC

Governing Africa's
financial future.

Institutional-grade governance, risk, and compliance frameworks for Africa's regulated financial institutions — delivered in weeks, not months, at a fraction of traditional advisory cost.

5+
Jurisdictions covered
8×
Faster than traditional advisory
100%
Regulatory-grade output
The problem we solve

Regulation doesn't wait.
Neither should your framework.

Africa's financial regulators are raising the bar. Boards that cannot demonstrate a current, coherent policy framework are exposed — to enforcement action, supervisory censure, and reputational risk.

01

Traditional advisory is too slow

A conventional advisory firm takes 12–24 months to deliver a policy framework. Regulatory deadlines don't move. Board inspection dates don't move. Your framework needs to be ready when the regulator arrives.

02

Templates are not frameworks

Generic policy templates are not calibrated to your specific regulatory profile. A policy that satisfies CBK does not automatically satisfy IRA or SARB. Your framework must be built for your jurisdictions, your regulators, your risk profile.

03

Delivery is only half the work

Most advisory firms deliver documents and disappear. Policies go out of date. Reviews are missed. Staff don't know what applies to them. A framework that is not maintained is a liability, not an asset.

04

Multi-jurisdiction complexity is underserved

A Group operating in Kenya, Uganda, Tanzania, South Africa, and Rwanda needs governance documents aligned to five different regulatory regimes. Most advisors handle one jurisdiction well. Themis GRC is built for the multi-jurisdiction reality of African financial groups.

How it works

From gap to governed
in eight weeks.

Our six-phase delivery model is purpose-built for speed without compromise on quality or regulatory accuracy.

1

Policy Gap Assessment

We assess your current framework against the regulatory requirements of every jurisdiction you operate in. You receive a gap report and service recommendation within 5 business days — at no charge.

2

Framework Architecture

We design your policy taxonomy, document numbering system, approval authority matrix, and review calendar — the architecture that makes your framework coherent, not just a collection of documents.

3

Document Drafting

Every document is drafted to institutional standard — Board-ready formatting, specific regulatory citations, plain English, and the right obligations assigned to the right roles. Two rounds of revision included.

4

Policy Hub Go-Live

Your Policy Hub is built, populated, cross-linked, and made accessible to your staff. The Policy Register is active. The Review Calendar is running. Your Board can see the framework the day it goes live.

5

Policy Academy Launch

Role-targeted training is deployed for every policy domain. Staff complete mandatory training. Completion is tracked. Your regulator can see who knows what — and when they knew it.

6

Ongoing Assurance

Your framework is maintained, evolved, and reported on continuously. When regulation changes, your policies update. When your Board needs a governance report, it is ready.

Service tiers

Built to grow with you.

Start with what you need today. Upgrade as your business grows and your regulatory obligations deepen.

Tier 1
Foundation
From USD 8,000 setup + USD 500/month
  • Up to 3 policy domains
  • Full document suite per domain
  • Word and PDF delivery
  • Single jurisdiction
  • Annual review management
Tier 2
Governed
From USD 15,000 setup + USD 1,500/month
  • Everything in Foundation
  • Up to 5 domains
  • Live Policy Hub on Notion
  • Policy Register and Review Calendar
  • Up to 2 jurisdictions
  • Cross-linked documents
Tier 4
Assured
From USD 40,000 setup + USD 4,000/month
  • Everything in Academy
  • All domains
  • Unlimited jurisdictions
  • Quarterly Board compliance reports
  • Live governance dashboard
  • Annual policy health audit
  • Board committee presentation support
Regulatory coverage

Every framework. Every jurisdiction.

Themis GRC documents are calibrated to the specific requirements of the regulators in each jurisdiction — not generic templates applied uniformly.

KENYA
CBK
IRA Kenya
CMA
UGANDA
Bank of Uganda
IRA Uganda
TANZANIA
Bank of Tanzania
TIRA
SOUTH AFRICA
SARB / Prudential Authority
FSCA
RWANDA
National Bank of Rwanda

International frameworks applied across all jurisdictions: Basel III · IAIS ICPs · FATF · ISO 37000 · King IV · OECD Principles · IFRS 9/17 · ISO 27001

Why Themis GRC

Not advisory. Infrastructure.

The difference between a traditional advisory engagement and a Themis GRC engagement is the difference between a report and a running system.

Capability
Traditional advisory
Themis GRC
Full framework delivery timeline
12–24 months
8–16 weeks
Multi-jurisdiction coverage in one engagement
No
Yes
Live Policy Hub with cross-linked documents
No
Yes
Role-targeted training materials per domain
No
Yes
Ongoing regulatory change monitoring
No
Yes
Board-ready quarterly compliance reports
No
Yes
Year 1 total cost (mid-size institution)
USD 200,000–500,000+
USD 40,000–115,000

Regulatory complexity,
mastered.

Your first Policy Gap Assessment is complimentary. No obligation. No sales pressure. Just a clear picture of where your framework stands and what it will take to get it right.

Get in touch

Start the conversation.

We respond within one business day.

Tell us about your organisation and we will schedule a complimentary Policy Gap Assessment — a structured review of your current framework against the regulatory requirements of your jurisdictions.

There is no charge for the assessment. You will receive a written gap report and a service recommendation within 5 business days of our first conversation.

Email: hello@themisgrc.com
Location: Nairobi, Kenya
LinkedIn: Themis GRC
X: @ThemisGRC