About Us Contact Blog
Governance DocsGovernance Docs
All ToolkitsWhich Toolkit?AboutBlogContactMy AccountCart
FOX v.2.4.9
Browse Toolkits
Governance Docs
  • Browse All Toolkits
  • Information Security & Cybersecurity
  • Data Privacy & Protection
  • Governance, Risk & Compliance
  • Quality Management
  • Health, Safety & Environment
  • AI Governance

My Account

CART

No products in the cart.

Day: August 15, 2026

BSI C5:2026 German cloud computing compliance criteria catalogue

BSI C5:2026: What the Revision Changed and Why EUCS Matters

Governance Docs15th August 2026

BSI C5:2026 explained — the EUCS Substantial alignment, the new subcriteria structure, sharpen versus complement, and the new…
Read More
CSA STAR cloud security assurance levels and the STAR for AI track

CSA STAR: The Levels, Valid-AI-ted and STAR for AI

Governance Docs15th August 2026

CSA STAR explained — the Cloud Controls Matrix, the free Level 1 self-assessment, Valid-AI-ted scoring, and the new…
Read More
StateRAMP, now GovRAMP — cloud security verification for government

StateRAMP Is Now GovRAMP: The Verification Pathway Explained

Governance Docs15th August 2026

StateRAMP has been renamed GovRAMP. The verification pathway, the 60 Core controls, the overlays, and why TX-RAMP is…
Read More
ITIL 4 service management and the arrival of ITIL Version 5

ITIL 4 in 2026: Still Current, But Version 5 Has Started

Governance Docs15th August 2026

ITIL 4 explained, and where it stands now that PeopleCert has begun the phased release of ITIL Version…
Read More
COBIT 2019 IT governance framework — objectives and domains

COBIT 2019: The 40 Objectives and Why There Is No Certificate

Governance Docs15th August 2026

COBIT 2019 explained — the 40 governance and management objectives, the five domains, the design factors that tailor…
Read More
ISO 37001 anti-bribery management systems — the 2025 edition

ISO 37001:2025 Anti-Bribery: What the New Edition Requires

Governance Docs15th August 2026

ISO 37001:2025 is the current edition and the 2016 standard is withdrawn. What the anti-bribery management system requires,…
Read More
CCPA compliance in 2026 — the new California privacy obligations

CCPA Compliance in 2026: Every New Deadline Explained

Governance Docs15th August 2026

CCPA compliance changed on 1 January 2026. The risk assessment, ADMT and cybersecurity audit deadlines, read from the…
Read More
ISO 31000 risk management — principles, framework and process

ISO 31000 Risk Management: The 3 Components Explained

Governance Docs15th August 2026

ISO 31000:2018 explained — the three components, why there is no certification, and the third edition now at…
Read More
The CIS Controls v8.1 framework and its three Implementation Groups

CIS Controls v8.1: The 18 Controls and 3 Implementation Groups

Governance Docs15th August 2026

A practical guide to CIS Controls v8.1 — the 18 Controls, the 153 Safeguards, and how the three…
Read More
Cyber Essentials certification — the five technical controls

Cyber Essentials Certification: The Five Controls

Governance Docs15th August 2026

Cyber Essentials certification explained: the five technical controls, why scope decides the outcome, and the four failures that…
Read More
FedRAMP authorization — what FedRAMP 20x changed

FedRAMP Authorization: What FedRAMP 20x Changed

Governance Docs15th August 2026

FedRAMP authorization has changed. 20x is past the pilots and in wide-scale adoption, Key Security Indicators replaced yearly…
Read More
CMMC compliance — the four-phase rollout under 32 CFR Part 170

CMMC Compliance: The Four-Phase Rollout Explained

Governance Docs15th August 2026

CMMC compliance explained: the three levels, the four phases, and why Phase 2 on 10 November 2026 is…
Read More
    ←
  • 1
  • 2
  • 3
  • 4
  • →

Recent Posts

How to weight the clauses in an ISO 22301 gap analysis
ISO 22301 Gap Analysis: 6 Proven Rules for a Plan That Lands

August 16, 2026

What each ISO 27001 certification audit stage tests in a readiness assessment
ISO 27001 Readiness Assessment: 6 Proven Checks

August 16, 2026

What the ePrivacy Directive and the GDPR each require for cookie consent
Cookie Consent: 6 Proven Rules Article 5(3) Sets

August 16, 2026

What replaced the FedRAMP authorization boundary in the Consolidated Rules for 2026
Authorization Boundary: 6 Proven Steps for FedRAMP 2026

August 16, 2026

What the Framework Directive and ISO 45003 each establish about psychosocial risk
Psychosocial Risk: 6 Proven Steps for ISO 45001

August 16, 2026

Categories

  • Articles
  • DORA
  • GDPR
  • HIPAA
  • ISO 27001
  • ISO 42001 & AI governance
  • ISO 9001
  • Management systems
  • NIS2
  • Security frameworks
  • SOC 2
Governance DocsGovernance Docs

Reliable ISO & compliance documentation toolkits that help your business meet regulatory standards with ease.

Governance Docs LLC
1209 Mountain Road Pl NE, Suite R
Albuquerque, NM 87110, USA
info@governancedocs.com
+1 812 227 5662

Toolkits

  • ISO 27001:2022
  • GDPR
  • SOC 2
  • PCI-DSS v4.0
  • HIPAA
  • ISO 42001
  • All toolkits →

Company

  • About Us
  • Blog
  • Contact
  • FAQ
  • Which toolkit do I need?
  • Free templates

Policies

  • Privacy Policy
  • Terms & Conditions
  • Refund & Return Policy
  • Delivery Policy
Browse by topicISO 27001ISO 42001 & AI governanceGDPRSOC 2HIPAANIS2DORAISO 9001Management systemsSecurity frameworks
© 2026 Governance Docs LLC. All rights reserved.
Secure checkoutstripeVISA