Audnexa
SecurityModulesPricingFAQ
plPolski enEnglish daDansk
Book a security walkthrough
SecurityModulesPricingFAQ For audit firms +48 12 200 27 10 Book a security walkthrough

← All articles

Offline (on-premise) compliance audit — keeping full data control

Author: Adam Wojak · Managing Director, Virtline (ISO/IEC 27001) · Updated: 2026-06-25

In short: An offline (on-premise) audit means audit material and data stay inside the organization’s infrastructure, with no outbound traffic to the cloud. For banks and entities bound by banking secrecy this is often a precondition. Bank Mode in Audnexa delivers this — data does not leave the customer’s infrastructure.

Why offline mode matters

For banks and regulated organizations, data control is often a precondition, not an add-on — due to banking secrecy, supervisory expectations and GDPR. Offline/on-premise mode lets you run the audit without moving customer data outside.

When offline mode is needed

  • data under banking secrecy or especially sensitive,
  • a requirement of no outbound traffic (air-gapped environments),
  • a strict cloud policy or a ban on processing outside the infrastructure,
  • an audit at an ICT provider where full access control matters.

Benefits of an offline audit

  • data and audit material stay in the customer’s infrastructure,
  • no outbound traffic by default (flow control),
  • a smaller vendor-risk surface,
  • consistency with banking secrecy and supervisory expectations,
  • a full audit trail and human approval.

What Bank Mode in Audnexa is

Bank Mode is a fully offline mode: audit data and materials can stay in the customer’s infrastructure, with no outbound traffic by default and a local model — customer data is not processed by Virtline or third-party AI providers and is not used to train models. Updates and support access are customer-controlled.

This approach was shaped in Virtline’s real audit practice (ISO/IEC 27001). Audnexa does not replace an auditor’s or lawyer’s opinion.

Frequently asked questions

In offline mode, does data leave the bank?

No. In Bank Mode, audit data and materials can stay within the customer’s infrastructure, with no outbound traffic by default.

Is customer data used to train models?

No — customer data is never used to train models, in any mode.

How does offline differ from cloud mode?

In offline mode data stays with the customer with no outbound traffic; in hybrid/cloud mode we precisely define data categories, subprocessors and processing regions.

Sources

  • EUR-Lex — GDPR (EU) 2016/679, Art. 32

Book a security walkthrough

Related articles

  • NIS2 audit — who is covered, what the obligations are, and how to prepare
  • Which tools support NIS2, DORA and banking compliance audits? Selection criteria
  • DORA audit — ICT requirements, third-party risk and how to prepare

This content is informational and does not constitute a legal opinion, an auditor’s opinion or a formal compliance decision.

← All articles

Audnexa

Auditable AI workspace for IT security and compliance reporting at regulated institutions.

Audnexa is a product of Virtline Sp. z o.o.

Product

Security Deployment Modules Pricing Trust Center

Company

Knowledge For audit firms Contact LinkedIn +48 12 200 27 10 biuro@virtline.com

Legal

Privacy policy DPA Terms security@virtline.com

Audnexa supports the work of auditors and compliance teams. It does not constitute a legal opinion, an auditor’s opinion, or a formal compliance decision.

© 2026 Virtline Sp. z o.o. All rights reserved. ul. Wadowicka 8A, 30-415 Kraków · NIP 6751499701

We use cookies for traffic analytics (GA4). Statistics load only after your consent. Privacy policy