Wilke A/S

Denmark · owned by Rait Group OÜ (Estonia) · wilke.dk · 12 vendors

Wilke is a Danish market research and customer insights company that helps organisations understand human needs and behaviour through data collection, analysis, and strategic recommendations. The company offers services spanning customer experience tracking, segmentation, business development, and consumer research across a wide range of sectors including retail, finance, energy, and public sector. Wilke is part of the Nordic RAIT Group, which acquired a 70% stake in the company in the summer of 2023.

Resilience scores

Technology vendors

Insights

Last updated 2026-09-13 · revision 3

12 direct vendors, 207 subvendors

Direct vendors by controlling owner country (sample)

Subvendors by controlling owner country (sample)

Migration Readiness: 6/10

Assessed by AI based on technology stack characteristics (cloud-native vs legacy, containerization, microservices), regulatory environment, data residency requirements, financial stability, and vendor lock-in risks. The score ranges from 0-10, where higher scores indicate better readiness for technology migration.

Wilke A/S shows moderate migration readiness, scoring 55. The company benefits from a 'proprietary SaaS-style data and insights platform' (Wilke Insights Platform) and extensive API-based data integration capabilities, indicating a modern architectural approach for its core offering. Existing integrations with numerous cloud-based tools like HubSpot, Salesforce, Qualtrics, Power BI, and Tableau also suggest familiarity with cloud ecosystems and a foundation for further cloud adoption. The use of NLP and Machine Learning further points to modern infrastructure capabilities. However, several factors reduce their readiness. The continued use of legacy statistical software (IBM SPSS, SAS) will present a significant challenge during migration, requiring either re-platforming or specific legacy environment considerations. The 'NIS2 Assessment Required' is a critical regulatory hurdle; if Wilke falls under NIS2, any migration would need to strictly adhere to enhanced cybersecurity and governance requirements, potentially increasing complexity, cost, and timeline. Strict EU data residency requirements (inferred from GDPR and Danish HQ) limit flexibility in choosing cloud regions and providers. Furthermore, the 'Vendor Lock-in Risk: Unknown' is a significant concern; without clarity on vendor contracts and dependencies for their 14 services, the effort and cost of migrating away from or integrating with these vendors cannot be fully assessed. The lack of financial stability data also means their capacity to fund a potentially complex migration is unknown.

Compliance

7 in-scope frameworks identified; showing 3.

ePrivacy Directive — Partially Compliant

Risk is Medium because Wilke operates a website that uses cookies and tracking technologies (including Google Tag Manager, web beacons in newsletters, and behavioral tracking). The ePrivacy Directive (implemented in Denmark via the Danish Executive Order on Cookies) requires informed consent for non-essential cookies. Wilke has a cookie policy in place, but the adequacy of their cookie consent mechanism (using Squarespace's built-in tools) has not been independently verified. Datatilsynet has been active in enforcing cookie compliance in Denmark, including against companies using Google Analytics without adequate safeguards.

Evidence: https://wilke.dk/cookiepolitik, https://wilke.dk/privatlivspolitik, https://www.datatilsynet.dk/english/topics/cookies

Danish Marketing Practices Act — Assessment Required

Risk is Medium because Wilke conducts marketing activities (newsletters, event invitations, webinars) and provides marketing research services to clients. The Danish Marketing Practices Act regulates direct marketing, including email marketing consent requirements, which are directly relevant to Wilke's newsletter operations. The Act also governs unfair commercial practices. Non-compliance can result in fines and injunctions from the Danish Consumer Ombudsman (Forbrugerombudsmanden). The risk is Medium rather than High because Wilke's primary business is B2B market research rather than consumer-facing marketing.

Evidence: https://wilke.dk/privatlivspolitik, https://www.retsinformation.dk/eli/lta/2017/426

SOC 2 (source) — Assessment Required

Risk is Medium because while SOC2 is not a legal requirement, it is increasingly expected by enterprise clients — particularly US-based clients or multinational companies — when engaging data processors. Wilke processes client data and survey respondent data on behalf of its clients, positioning it as a data processor/service organization. If Wilke's international clients (via RAIT Group's Nordic/Baltic network or direct international engagements) require SOC2 Type II reports as part of vendor due diligence, the absence of such a report could represent a commercial and reputational risk. The 2023 ransomware attack further elevates the expectation for formal security assurance. However, SOC2 is not legally mandated in Denmark or the EU, so the risk is commercial rather than regulatory.

Evidence: https://wilke.dk, https://wilke.dk/sparks/er-din-organisation-klar-til-nis2-direktivet

Financials

Three-year financials

Financial Resilience Score: 6/10

Wilke A/S is a mature Danish market research and CX consultancy with qualitative indicators of moderate financial resilience, though exact financial figures were not accessible in the source research. The company benefits from recurring, subscription-like revenue streams via long-running tracker programmes (10+ years with clients such as BoConcept and Dansk Erhverv), a diversified blue-chip client base across 15+ sectors (including Sydbank, Tryg, PFA, Salling Group, Carlsberg, Velux, Mastercard, and Boehringer Ingelheim), and geographic diversification across three Danish offices in Copenhagen, Aarhus, and Odense. Since summer 2023, Wilke has been ~70% owned by RAIT Group, a Nordic/Baltic insights platform, providing balance sheet backing, international expansion channels, and cross-selling opportunities. The elevation of CEO Stine Halberg to Group CEO in 2025 signals confidence in leadership but also creates management bandwidth risk. Recent operational events include a 2023 cyber-attack that likely had one-off cost and revenue impact, highlighting operational risk in a data-sensitive business. As a small-cap Danish services firm dependent on marketing budgets (a cyclical spend category) and talent retention, Wilke has moderate exposure to downturns and client concentration risk. Absent verified financial statements, a score of 6 reflects a stable but small operator with meaningful strategic backing offset by unverified numerics and known operational shocks.

Key strengths: Recurring tracker/subscription revenue with 10+ year client relationships, Diversified blue-chip client base across 15+ sectors, 70% ownership by RAIT Group (Nordic/Baltic platform) since 2023, Three Danish offices providing geographic diversification, Growing international client footprint (Mastercard, Boehringer Ingelheim, Øresundsbron), Syndicated proprietary products (E-handelsanalysen, sustainability monitor)

Risk factors: 2023 cyber-attack demonstrating operational and data security risk, Cyclical exposure to client marketing/research budgets, Small-cap services firm with likely modest equity buffer, Talent-driven business with labour-cost-sensitive margins, Integration risk with RAIT Group post-acquisition, Dual CEO/Group CEO role may stretch management bandwidth, Client concentration sensitivity to a few large accounts

Revenue by geography

Revenue by product/service

Workforce by country

Signed-in users can see whether their own company is exposed to this vendor's disruption, plus the full sub-vendor list and country breakdowns, every in-scope compliance framework plus gaps and next steps, and alerts when any of it changes.

View the full interactive report