Compliance Support List

With 33+ global compliances and comprehensive Compliance support, we enable our customers to operate with greater confidence in a complex threat landscape.

compliance hero

33+

Global Compliances

100%

GRC Coverage

24/7

Support

Showing 0 of 0 results

AVID-compliance

AVID

Global

General

Custom framework for internal security and risk controls

Coverage

Defines organization-specific security and governance controls where external regulations do not apply. Used to standardize enforcement and reporting across diverse environments.

AWS Azure GCP Oracle
DPDP-compliance

Digital Personal Data Protection (DPDP) Act – India

APAC

General

India’s statutory framework for digital personal data protection

Coverage

Establishes legal and technical obligations for personal data handling, including consent, safeguards, breach reporting, and transfers. Requires ongoing validation of implemented controls.

AWS Azure GCP Oracle
APRA

APRA 234 STANDARD

APAC

Banking

Australian Prudential Regulation Authority standard for operational risk management

Coverage

Operational risk management, business continuity, and information security for financial institutions.

AWS Azure GCP
AIID

AIID

Global

General

AI Vulnerability and Incident Database for artificial intelligence security

Coverage

AI/ML vulnerability tracking and incident response. Essential for AI system security. Critical for organizations deploying AI/ML systems.

AWS Azure GCP
CIS

AWS CIS Benchmark v1.4.0

Global

General

Center for Internet Security benchmark for AWS cloud security configuration

Coverage

AWS security best practices, identity management, logging, and monitoring. Critical for organizations using AWS infrastructure.

AWS
CIS

AWS CIS Benchmark v1.5.0

Global

General

Updated CIS benchmark for AWS with enhanced security controls

Coverage

Enhanced AWS security configurations, improved identity controls, and updated monitoring. Essential for modern AWS security posture.

AWS
CIS

CIS Benchmark v2.0.0

Global

General

Updated CIS security benchmark for multiple cloud platforms, with comprehensive security guidelines and enhanced controls.

Coverage

Provides updated security configurations, advanced threat detection, identity management, and compliance automation for AWS, Azure, and GCP. Essential for a modern, multi-cloud security posture.

AWS Azure GCP
CIS

AWS CIS Benchmark v2.0.0

Global

General

Latest CIS benchmark for AWS with comprehensive security guidelines

Coverage

Latest AWS security best practices, advanced threat detection, and compliance automation. Critical for enterprises with advanced AWS usage.

AWS
CIS

Azure CIS Benchmark v2.0.0

Global

General

Latest CIS security benchmark for Microsoft Azure cloud platform

Coverage

Azure security configuration, identity management, and compliance monitoring.

Azure
CIS

Azure CIS Benchmark v1.3.0

Global

General

Established CIS benchmark for Azure security configuration

Coverage

Azure security fundamentals, access controls, and monitoring configurations. Important for Azure security baseline.

Azure
CIS

GCP CIS Benchmarks v2.0.0

Global

General

Latest CIS benchmark for Google Cloud Platform with enhanced controls

Coverage

Advanced GCP security controls, improved monitoring, and compliance automation. Essential for modern GCP security posture.

GCP
AWS Well Architected

AWS Well-Architected Framework - Security

Global

Technology

AWS framework for building secure, high-performing, resilient, and efficient infrastructure

Coverage

Security pillar covering identity, detective controls, infrastructure protection, and incident response. Fundamental for AWS architecture design.

AWS
CIS

CIS Benchmark v3.0

Global

General

Cross-cloud baseline for secure configuration

Coverage

Provides prescriptive configuration checks to reduce misconfiguration risk across major cloud platforms. Serves as a common baseline for posture assessment and audits.

AWS Azure GCP Oracle
CIS

CIS Benchmark v4.0.1

Global

General

Updated AWS-specific security baseline

Coverage

Expands and refines AWS control coverage, with emphasis on identity, logging, and service-level configuration. Used for continuous AWS posture monitoring.

AWS
BAIT

BAIT

Europe

Banking

Banking Supervision Requirements for IT (BaFin)

Coverage

IT risk management, outsourcing, and operational resilience for German banks. Mandatory for German financial institutions.

AWS Azure GCP
CCPA

California Consumer Privacy Act (CCPA)

North America

General

California privacy law protecting consumer personal information

Coverage

Consumer rights to know, delete, and opt-out of sale of personal information. Essential for businesses serving California consumers.

AWS Azure GCP
CMMC

CMMC - Cybersecurity Maturity Model Certification

North America

Federal

Defense Department cybersecurity standard for contractors

Coverage

Cybersecurity maturity model for defense contractors. Critical for DoD supply chain security. Mandatory for defense contractors.

AWS
COPPA

COPPA

North America

General

Children's Online Privacy Protection Act

Coverage

Privacy protection for children under 13, parental consent requirements. Critical for services targeting children. Mandatory for child-directed services.

AWS Azure GCP
CSCRF SEBI

CSCRF SEBI

APAC

General

Securities and Exchange Board of India Cyber Security and Cyber Resilience Framework

Coverage

Cybersecurity and resilience framework for Indian securities market participants. Mandatory for SEBI-regulated entities.

Azure GCP
CSPM

CSPM Encryption Program

Global

Technology

Cloud Security Posture Management encryption requirements

Coverage

Data encryption at rest and in transit, key management, and cryptographic controls. Essential for cloud data protection.

AWS Azure GCP
FedRAMP

FedRamp

North America

Technology / Federal

Federal Risk and Authorization Management Program

Coverage

Security controls for cloud services used by federal agencies. Essential for federal cloud services. Mandatory for federal government cloud adoption.

AWS Azure GCP
FERPA

FERPA

North America

Education / Healthcare

Family Educational Rights and Privacy Act

Coverage

Privacy protection for student education records. Critical for educational institutions. Mandatory for schools receiving federal funding.

AWS Azure GCP
FISMA

FISMA

North America

Federal

Federal Information Security Management Act

Coverage

Information security standards for federal agencies. Essential for federal information systems. Mandatory for federal agencies.

AWS Azure GCP
CIS

GCP CIS Benchmarks v1.2.0

Global

General

CIS security benchmark for Google Cloud Platform

Coverage

GCP security configuration, identity and access management, and logging. Critical for organizations using Google Cloud.

GCP
GDPR

GDPR (General Data Protection Regulation) EU

Europe

General

EU regulation for data protection and privacy

Coverage

Personal data protection, consent management, and individual rights. Essential for EU data processing. Mandatory for EU personal data processing.

AWS Azure GCP
HIPAA

HIPAA

North America

Healthcare

Health Insurance Portability and Accountability Act

Coverage

Protected health information (PHI) security and privacy. Critical for healthcare organizations. Mandatory for healthcare entities handling PHI.

AWS Azure GCP
Hitrust

HITRUST CSF

North America

Healthcare

Health Information Trust Alliance Common Security Framework

Coverage

Comprehensive security framework for healthcare and financial services. Essential for healthcare and financial organizations.

AWS Azure GCP
ISO 27001

ISO 27001 - 2013

Global

General

International standard for information security management systems (2013 version)

Coverage

Information security management system (ISMS) requirements based on 2013 standard. Essential for enterprise security. Widely adopted security standard.

AWS Azure GCP
ISO 27001

ISO 27001 - 2022

Global

General

Latest international standard for information security management systems

Coverage

Updated information security management system (ISMS) requirements with modern controls. Essential for contemporary enterprise security.

AWS Azure
ISO 27017

ISO 27017

Global

General

International standard for cloud security controls

Coverage

Cloud-specific security controls and guidance. Critical for cloud security. Recommended for cloud deployments.

AWS Azure GCP
ISO 27018

ISO 27018

Global

General

International standard for cloud privacy protection

Coverage

Privacy protection for personally identifiable information in cloud. Essential for cloud privacy. Recommended for cloud PII processing.

AWS Azure GCP
ISMS

ISMS-P for AWS

APAC

General

Information Security Management System Personal Information Protection

Coverage

Personal information protection and management system requirements. Important for Japanese AWS deployments.

AWS
Korean Financial Security Agency

Korean Financial Security Agency Guidelines

APAC

Banking

South Korean financial security requirements

Coverage

Financial information security and risk management. Essential for Korean financial institutions. Mandatory for Korean financial services.

LGPD

LGPD

South America

General

Brazilian General Data Protection Law

Coverage

Personal data protection and privacy rights. Essential for Brazilian data processing. Mandatory for Brazilian personal data processing.

AWS Azure GCP
MITRE

Mitre AWS Attack Framework

Global

Technology / Federal

MITRE ATT&CK framework for AWS cloud environments

Coverage

Threat detection and response for AWS environments. Critical for AWS threat detection. Recommended for advanced AWS security.

AWS
NIST 800-171

NIST 800-171

North America

Technology / Federal

NIST standard for protecting controlled unclassified information

Coverage

Security requirements for controlled unclassified information (CUI). Essential for federal contractors. Mandatory for CUI handling.

AWS Azure GCP
NIST CSF

NIST CSF

North America

General

NIST Cybersecurity Framework

Coverage

Comprehensive cybersecurity framework: identify, protect, detect, respond, recover. Essential for enterprise cybersecurity.

AWS Azure GCP
NIST SP 800-53

NIST SP 800-53

North America

Federal

NIST security controls for federal information systems

Coverage

Comprehensive security controls catalog for federal systems. Essential for federal information systems. Mandatory for federal agencies.

AWS Azure GCP
OWASP

OWASP Top 10 for LLM v2025

Global

General

OWASP Top 10 security risks for Large Language Model applications

Coverage

Security risks and mitigation strategies for LLM applications. Critical for AI/ML application security. Essential for organizations deploying LLM systems.

AWS Azure GCP
PCI

PCI

Global

Banking / Finance

Payment Card Industry Data Security Standard

Coverage

Credit card data protection and secure payment processing. Critical for payment processing. Mandatory for card data handling.

AWS Azure GCP
SOC 2

SOC 2 Type II

Global

General / Technology

Service Organization Control 2 Type II audit

Coverage

Security, availability, processing integrity, confidentiality, and privacy controls. Essential for service providers. Critical for customer trust.

AWS Azure GCP
SOC 3

SOC 3

Global

General

Service Organization Control 3 general use report

Coverage

Public summary of SOC 2 controls and effectiveness. Important for public trust. Recommended for transparency.

AWS Azure GCP
VAIT

VAIT

Europe

Banking

Insurance Supervision Requirements for IT (BaFin)

Coverage

IT risk management and operational resilience for German insurance companies. Mandatory for German insurance companies. Required for insurance operations in Germany.

AWS Azure GCP
essential 8

Essential 8

APAC

General

ACSC Essential Eight (developed by the Australian Cyber Security Centre / ASD)

Coverage

It represents the baseline cybersecurity mitigation strategies to protect internet-connected networks. It focuses on three primary objectives: Prevent Attacks, Limit Attack Impact, and Ensure Data Availability.

AWS Azure GCP