Standard References

Official compliance frameworks and standards observed by the organization. Use these references to understand the specific controls required for each audit.

CyberSecure Canada

Standard

CyberSecure Canada Baseline Security Controls. A Government of Canada cybersecurity certification baseline for small and medium-sized organizations.

88 Controls

India's DPDP

Regulation

Digital Personal Data Protection Act, 2023. Governs the processing of digital personal data in India.

36 Controls

EU GDPR

Regulation

EU General Data Protection Regulation (Regulation (EU) 2016/679). Governs the processing of personal data of individuals in the European Union.

46 Controls

ISO/IEC 27001:2022

standard

The international standard for Information Security Management Systems (ISMS).

122 Controls

ISO/IEC 42001:2023

Standard

ISO/IEC 42001:2023. International standard for establishing, implementing, maintaining, and improving an Artificial Intelligence Management System (AIMS).

65 Controls

Quebec Law 25

Regulation

Quebec Law 25 (Loi 25). Modernizes the protection of personal information in Quebec's private sector.

37 Controls

SOC 2

Standard

SOC 2 is a compliance framework developed by the American Institute of Certified Public Accountants (AICPA) that evaluates an organization's information systems and controls relevant to security, availability, processing integrity, confidentiality, and privacy.

61 Controls
Showing 1 to 7 of 7 results
Rows per page: