About Us Contact Blog
Governance DocsGovernance Docs
Which Toolkit?SoA GeneratorFree TemplatesAboutBlogContactMy AccountCart
FOX v.2.4.9
Browse Toolkits
Governance Docs
  • Browse All Toolkits
  • Information Security & Cybersecurity
  • Data Privacy & Protection
  • Governance, Risk & Compliance
  • Quality Management
  • Health, Safety & Environment
  • AI Governance

My Account

CART

No products in the cart.

Day: September 2, 2026

Setting risk criteria under ISO 31000

Risk Criteria: A Clear Guide to Setting Them Under ISO 31000

Governance Docs02nd September 2026

Risk criteria under ISO 31000: the 6 decisions to make before assessing anything, how they differ from risk…
Read More
The twenty NIST 800-53 control families

NIST 800-53 Control Families: A Clear Guide to All 20

Governance Docs02nd September 2026

All 20 NIST 800-53 control families with their two-letter IDs, base controls versus enhancements, and the 3 families…
Read More
Critical ICT third-party providers under DORA oversight

Critical ICT Third-Party Providers: A Clear DORA Guide for 2026

Governance Docs02nd September 2026

Critical ICT third-party providers under DORA: the 4 designation criteria, how a Lead Overseer is chosen, and the…
Read More
DORA incident reporting deadlines explained

DORA Incident Reporting: A Clear Guide to the 4-Hour Rule

Governance Docs02nd September 2026

DORA incident reporting has 3 deadlines: 4 hours from classification, 72 hours for the intermediate report, one month…
Read More
The cybersecurity risk register template elements

Cybersecurity Risk Register: A Clear Guide to the 10 Elements

Governance Docs02nd September 2026

A cybersecurity risk register in 10 elements, from NIST IR 8286 Revision 1 - what each field is…
Read More
The seven steps of the NIST RMF

NIST RMF: A Clear Guide to the 7 Steps of SP 800-37

Governance Docs02nd September 2026

The NIST RMF in 7 steps, from Prepare to Monitor, with the publication behind each - and how…
Read More
OPRP versus CCP under ISO 22000

OPRP vs CCP: A Clear Guide to Effective ISO 22000 Hazard Control

Governance Docs02nd September 2026

OPRP vs CCP under ISO 22000: a CCP has a measurable critical limit, an OPRP an action criterion.…
Read More
The four tiers of QHSE documentation

QHSE Documentation: A Clear Guide to the 4 Tiers

Governance Docs02nd September 2026

QHSE documentation works when the tiers are decided first: manual, procedures, work instructions, records. What belongs in each…
Read More
The COSO 17 principles of internal control

COSO 17 Principles: A Clear Guide to the 5 Components

Governance Docs02nd September 2026

The COSO 17 principles listed by component, plus the present-and-functioning test, what counts as a major deficiency, and…
Read More
The HACCP plan and the twelve Codex steps

HACCP Plan: A Clear Guide to the 12 Codex Steps

Governance Docs02nd September 2026

A HACCP plan is built from the 12 Codex steps - 5 preliminary steps then the 7 principles.…
Read More
The four types of ISO 45001 assessment

ISO 45001 Assessment: A Clear Guide to the 4 Types

Governance Docs02nd September 2026

An ISO 45001 assessment can mean 4 things: self-assessment, gap analysis, internal audit or certification audit. What each…
Read More
CIS Benchmarks compared with the CIS Controls

CIS Benchmarks vs CIS Controls: A Clear Guide for 2026

Governance Docs02nd September 2026

CIS Benchmarks are configuration guides; CIS Controls are a prioritized program. What each covers, the 3 profile levels,…
Read More
    ←
  • 1
  • …
  • 4
  • 5
  • 6
  • 7
  • 8
  • →

Recent Posts

The gifts and hospitality policy explained
Gifts and Hospitality: A Clear ISO 37001 Guide for 2026

September 2, 2026

ISO 27018 cloud privacy explained
ISO 27018: A Clear Guide to the 2025 Cloud Privacy Rules

September 2, 2026

The ISO 21001 internal audit checklist
ISO 21001 Internal Audit: A Clear Checklist for 2026

September 2, 2026

Authorised Economic Operator status explained
Authorised Economic Operator: A Clear Guide to the 4 Tests

September 2, 2026

CSA STAR Level 2 explained
STAR Level 2: A Clear Guide to Certification vs Attestation

September 2, 2026

Categories

  • Articles
  • DORA
  • GDPR
  • HIPAA
  • ISO 27001
  • ISO 42001 & AI governance
  • ISO 9001
  • Management systems
  • NIS2
  • Security frameworks
  • SOC 2
Governance DocsGovernance Docs

Reliable ISO & compliance documentation toolkits that help your business meet regulatory standards with ease.

Governance Docs LLC
1209 Mountain Road Pl NE, Suite R
Albuquerque, NM 87110, USA
info@governancedocs.com
+1 812 227 5662

Toolkits

  • ISO 27001:2022
  • GDPR
  • SOC 2
  • PCI-DSS v4.0
  • HIPAA
  • ISO 42001
  • All toolkits →

Company

  • About Us
  • Blog
  • Contact
  • FAQ
  • Which toolkit do I need?
  • Free templates
  • SoA generator
  • RSS feeds

Policies

  • Privacy Policy
  • Terms & Conditions
  • Refund & Return Policy
  • Delivery Policy
Browse by topicISO 27001ISO 42001 & AI governanceGDPRSOC 2HIPAANIS2DORAISO 9001Management systemsSecurity frameworks
© 2026 Governance Docs LLC. All rights reserved.
Secure checkoutstripeVISA