Larraby
Services

What we do

Five complementary service lines to solve real management and technology problems.

Custom software development

We design and build custom platforms and applications to solve real information management problems. We combine IoT platforms, digital twins and artificial intelligence on modular architectures built on open standards.

  • IoT platforms for building, campus and infrastructure management aligned with UNE 178104 (FIWARE, Orion Context Broker, time-series databases)
  • Digital twins of urban, educational and industrial environments for simulation, predictive analysis and decision support
  • RAG systems and AI-powered assistants grounded in corporate or highly specialized information (SmartLang)
  • Environmental and indoor air quality monitoring platforms with alarms, KPIs and historical analysis
  • Interoperable urban data systems: accessible pedestrian routing, data spaces (NGSI-LD, GeoJSON)
  • Secure document exchange, encryption, digital signature and electronic invoicing systems (WebSec)

Consulting & systems integration

We support digital transformation with an integrated approach: requirements analysis, scalable solution design and integration of heterogeneous systems on open standards. We bring direct experience from national and international standardization bodies.

  • Integration of heterogeneous systems: IoT sensors, ERPs, administrative systems and disparate data sources into unified platforms
  • Interoperable architectures on open standards (FIWARE, NGSI-LD, UNE, ISO/IEC) with standardized data models
  • Design and governance of sectoral data spaces: metadata, access policies and traceability
  • Business process modeling and re-engineering with BPMN
  • Deployment of open-source ERP, CRM, CMS and document management solutions
  • Strategic consulting on AI, IoT, digital twins and smart cities, with direct participation in standardization committees

Security & regulatory compliance

We act across every dimension of compliance: organizational, legal and technical. We align policies, processes and technical controls with applicable regulations and with the international standards in which we actively participate.

  • GDPR and LOPDGDD compliance: processing analysis, Data Protection Impact Assessments (DPIA), records of processing activities and DPO support
  • AI Act and AI governance: system classification, technical documentation, risk management and alignment with ISO/IEC and CEN/CENELEC
  • Anti-money laundering: diagnostic, procedures and controls for obliged entities
  • Trade secret protection and internal whistleblowing channels
  • Cybersecurity of IoT platforms and cloud systems: role-based access control, encryption, hardening and traceability
  • Data governance: access policies, metadata and traceability for data spaces and corporate systems

Data

We treat data as a strategic asset: from governance and data spaces to specializing AI models through LoRA techniques and retraining frontier models.

  • Data governance systems: policies, roles, metadata, traceability and quality
  • Design of and participation in sectoral data spaces with interoperability (NGSI-LD, data spaces)
  • Top-tier data processing and enrichment: transformations, intelligent analysis and AI-based augmentation
  • Data economy: valuation and monetization strategies, in line with the UNE specification we are actively leading
  • Building specialized AI models from proprietary data using LoRA (parameter-efficient fine-tuning) techniques
  • Retraining frontier models from leading providers to specialize them for concrete client tasks

Artificial intelligence

We cover the full AI lifecycle: from strategy and regulatory compliance to the deployment of generative and classical systems. We help organizations build AI management systems aligned with ISO/IEC 42001, the international reference standard for responsible AI governance.

  • AI strategy and governance: deployment of AI management systems compliant with ISO/IEC 42001, policy definition, roles and controls
  • AI Act compliance: system classification by risk level, technical documentation, continuous risk management and auditable evidence
  • Active participation in standardization committees (ISO/IEC JTC 1/SC 42, CEN/CLC/JTC 21, UNE 71/SC 42), translating best practices directly to our clients
  • Generative AI in production: LLMs, RAG systems grounded in internal or specialized knowledge (SmartLang), integration with corporate tools and agentic automation
  • Applied classical AI: predictive models, classification, regression and anomaly detection over operational, environmental or business data
  • Responsible integration: data protection, traceability of automated decisions and human oversight mechanisms