Udviklings- og Forenklingsstyrelsen

Denmark · owned by Skatteforvaltningen (Denmark) · ufst.dk · 33 vendors

Udviklings- og Forenklingsstyrelsen is a Danish government agency that ensures well-functioning IT solutions for the entire Tax Administration. The agency is part of Skatteforvaltningen (the Danish Tax Administration) under the Ministry of Taxation.

Resilience scores

Technology vendors

Insights

Last updated 2026-08-10 · revision 14

33 direct vendors, 332 subvendors

Direct vendors by controlling owner country (sample)

Subvendors by controlling owner country (sample)

Migration Readiness: 4/10

Assessed by AI based on technology stack characteristics (cloud-native vs legacy, containerization, microservices), regulatory environment, data residency requirements, financial stability, and vendor lock-in risks. The score ranges from 0-10, where higher scores indicate better readiness for technology migration.

Udviklings- og Forenklingsstyrelsen (UFST) exhibits a low-to-medium level of migration readiness (Score: 35). **Strengths:** * **Financial Stability:** Consistent revenue growth provides the financial capacity to invest in and fund complex migration projects. **Weaknesses & Challenges:** * **Significant Regulatory and Data Residency Constraints:** This is the most substantial challenge. As a Danish government agency handling highly sensitive tax and citizen data, UFST is subject to strict GDPR and NIS2 requirements, both assessed as "High" risk and "Assessment Required." Crucially, "Danish and EU data residency requirements" dictate that personal data must generally remain within the EU/EEA, with potential additional national requirements for data to stay within Denmark. This severely limits cloud migration options, requiring specific regional cloud deployments and robust legal frameworks (e.g., Standard Contractual Clauses) for any cross-border data transfers, significantly increasing complexity and cost. * **Unknown Tech Stack (Likely Legacy):** The "Internal Tech Stack" is not specified, but "Key Technologies" such as "Government IT Systems" and "Tax Administration Systems" often indicate a reliance on legacy, monolithic, on-premise systems. Migrating such systems to modern cloud environments typically involves extensive re-platforming or re-architecting, which is time-consuming, expensive, and carries high risk. * **Unknown Vendor Lock-in:** The "Vendor Lock-in Risk" is "Unknown." With 53 services and a geographically diverse set of vendor HQ/owner countries (as assumed from the provided data despite "Total Vendors: 0"), there's a high probability of complex, deeply integrated vendor relationships. If these relationships involve proprietary technologies or long-term contracts, it could create significant lock-in, making it difficult and costly to migrate away from existing solutions or vendors. * **Complexity of Vendor Landscape:** While vendor geographic diversity can be a resilience strength, managing 53 services across vendors from 9 different countries could introduce significant complexity in terms of contract negotiation, integration management, and coordination during a large-scale migration. * **Lack of Cloud-Native Indicators:** There is no information suggesting the adoption of cloud-native principles, containerization, or microservices architecture, which are key enablers for efficient and flexible migration. **Overall:** While financially stable, UFST faces substantial hurdles to migration readiness due to stringent regulatory and data residency requirements, an unknown but likely legacy tech stack, and the significant risk of vendor lock-in within a complex vendor landscape. These factors suggest that any migration effort would be highly complex, costly, and require meticulous planning to ensure compliance and minimize disruption.

Compliance

10 in-scope frameworks identified; showing 3.

Danish Whistleblower Protection Act — Compliant

The Danish Whistleblower Protection Act (implementing EU Directive 2019/1937) requires organizations with 50+ employees to establish internal whistleblower channels. UFST has approximately 1,800 employees and has publicly established a whistleblower scheme (Whistleblowerordning). Evidence of compliance is directly available on UFST's website. Risk is Low as the scheme is demonstrably in place.

Evidence: https://ufst.dk/om-styrelsen/kontakt/whistleblowerordning, https://ufst.dk/om-styrelsen/kontakt

Danish Sikkerhedscirkulæret — Assessment Required

The Danish Government Security Circular (Sikkerhedscirkulæret, CIR1H nr. 10338 af 17/12/2014 as updated) sets mandatory information security requirements for all Danish central government authorities. UFST, as a central government agency under Skatte- og Vækstministeriet, is directly subject to this circular. It requires classified information handling, personnel security clearances, physical security, and IT security measures. Given UFST's role in operating national tax IT infrastructure, compliance with the Security Circular is mandatory and non-negotiable. Risk is High because non-compliance could expose classified government information and undermine national security.

Evidence: https://ufst.dk/om-styrelsen/vores-opgaver/fakta-om-styrelsen, https://www.retsinformation.dk/, https://pet.dk/

Danish Offentlighedsloven — Assessment Required

The Danish Offentlighedsloven (Act No. 606 of 12 June 2013) grants citizens and media the right to access documents held by public authorities. UFST, as a central government agency, is subject to this law. Compliance requires proper document management, timely responses to access requests, and appropriate application of exemptions. Risk is Medium because non-compliance with access requests can lead to complaints to the Parliamentary Ombudsman (Ombudsmanden) and reputational damage, but does not carry direct financial penalties.

Evidence: https://ufst.dk/om-styrelsen/kontakt, https://www.retsinformation.dk/, https://www.ombudsmanden.dk/

Financials

Three-year financials

Financial Resilience Score: 9/10

Udviklings- og Forenklingsstyrelsen (UFST) is a Danish central government IT agency under the Ministry of Taxation, not a private company. It is fully financed by the Danish state budget through annual appropriations (Finansloven, § 09.21.03), giving it exceptional funding stability. Denmark maintains a AAA sovereign credit rating, so counterparty and credit risk are effectively zero. The agency's financial resilience is therefore tied to the Danish state's fiscal position rather than any commercial performance. UFST holds a strategic mandate as the provider and operator of critical national IT for the entire Danish Tax Administration, including tax collection systems, property valuation IT, customs IT, and digital reporting. This has ensured high political and budgetary priority since the 2018 restructuring of SKAT. With ~1,800 employees, it is one of Denmark's largest public-sector IT organizations. However, UFST carries meaningful operational and reputational risks. It inherited troubled legacy IT programmes from the former SKAT (EFI debt collection, property-valuation IT), which have had significant delays and cost overruns and are regularly scrutinised by Rigsrevisionen. Heavy reliance on external IT vendors (Netcompany, Accenture, KMD, Deloitte, Capgemini) creates procurement and vendor lock-in risks, and the agency competes with the private sector for scarce Danish IT talent under state salary constraints.

Key strengths: Fully funded by Danish state budget (Finansloven), Denmark AAA sovereign credit rating - zero counterparty risk, Strategic mandate as critical national IT provider for Tax Administration, High political and budgetary priority since 2018 SKAT restructuring, Large scale with ~1,800 employees, Stable appropriation-based funding model

Risk factors: Cost overruns on inherited legacy IT programmes (EFI, property valuation), Regular scrutiny from Rigsrevisionen (National Audit Office), Political and parliamentary attention affecting budget stability, Heavy vendor concentration (Netcompany, Accenture, KMD, Deloitte, Capgemini), Procurement risk and vendor lock-in, Talent competition with private sector under state salary constraints

Revenue by geography

Revenue by product/service

Workforce by country

Signed-in users can see whether their own company is exposed to this vendor's disruption, plus the full sub-vendor list and country breakdowns, every in-scope compliance framework plus gaps and next steps, and alerts when any of it changes.

View the full interactive report