About Us Contact Blog
Governance DocsGovernance Docs
Which Toolkit?SoA GeneratorFree TemplatesSample ReportsFind the Right AssessmentRecords of Processing (ROPA)Data Privacy Impact AssessmentLegitimate Interests AssessmentTransfer Impact AssessmentPrivacy Risk AssessmentGDPR Gap AssessmentUK GDPR Gap AssessmentCCPA/CPRA Gap AssessmentISO 27701 Gap AssessmentHIPAA Gap AssessmentISO 27001 Risk AssessmentThird-Party Risk AssessmentSoA GeneratorISO 27001 Assessment Tool (Excel)ISO 27001 Gap AssessmentSOC 2 Gap AssessmentNIST CSF 2.0 Gap AssessmentNIST SP 800-53 Gap AssessmentNIST RMF Gap AssessmentCIS Controls Gap AssessmentPCI DSS 4.0 Gap AssessmentNIS2 Gap AssessmentCMMC 2.0 Gap AssessmentNIST SP 800-171 Gap AssessmentFedRAMP Gap AssessmentBSI C5 Gap AssessmentIEC 62443 Gap AssessmentSAMA CSF Gap AssessmentNCA ECC Gap AssessmentISO 20000 Gap AssessmentAI Risk AssessmentAI Impact AssessmentISO 42001 Gap AssessmentEU AI Act Gap AssessmentBusiness Impact AnalysisContinuity Risk AssessmentISO 22301 Assessment Tool (Excel)ISO 22301 Gap AssessmentDORA Gap AssessmentISO 9001 Gap AssessmentISO 13485 Gap AssessmentIATF 16949 Gap AssessmentISO 14001 Gap AssessmentISO 45001 Gap AssessmentISO 45001 Assessment Tool (Excel)HACCP Gap AssessmentEnterprise Risk AssessmentISO 31000 Gap AssessmentData Governance Gap AssessmentProject Management Gap AssessmentAll Gap AssessmentsAboutBlogContactMy AccountCart
FOX v.2.4.9
Browse Toolkits
Governance Docs
  • Browse All Toolkits
  • Information Security & Cybersecurity
  • Data Privacy & Protection
  • Governance, Risk & Compliance
  • Quality Management
  • Health, Safety & Environment
  • AI Governance

My Account

CART

No products in the cart.

Day: September 18, 2026

data governance maturity model explained

Data Governance Maturity Model: The 5 Levels Explained (2026)

Governance Docs18th September 2026

The data governance maturity model: 5 levels (performed to optimized), 7 dimensions, how to run an evidence-based assessment,…
Read More
data lineage explained

Data Lineage: The 3 Essential Types and How to Capture Them (2026)

Governance Docs18th September 2026

Data lineage explained: business, technical and operational lineage, granularity and direction, 4 capture methods, the regulations that require…
Read More
master data management vs data governance explained

Master Data Management vs Data Governance: 5 Essential Differences

Governance Docs18th September 2026

Master data management vs data governance: MDM executes the golden record, governance decides definitions and rules — 5…
Read More
data catalog vs data dictionary explained

Data Catalog vs Data Dictionary: 5 Clear Differences (2026)

Governance Docs18th September 2026

Data catalog vs data dictionary on 5 differences — question, unit, meaning, context, currency — where the glossary…
Read More
data governance framework explained

Data Governance Framework: The 5 Essential Layers Explained (2026)

Governance Docs18th September 2026

A data governance framework in 5 layers — strategy and policy, operating model, standards and processes, assets and…
Read More
bow tie analysis explained

Bow Tie Analysis: The 6 Essential Elements Explained (2026)

Governance Docs18th September 2026

Bow tie analysis under IEC 31010: the 6 elements (hazard, top event, threats, consequences, preventive and mitigative barriers),…
Read More
risk management policy explained

Risk Management Policy: The 8 Essential ISO 31000 Sections (2026)

Governance Docs18th September 2026

The risk management policy ISO 31000 clause 5.2 asks leadership to issue: 8 sections in 3–6 pages, what…
Read More
IEC 31010 explained

IEC 31010: The Complete Guide to All 41 Risk Assessment Techniques

Governance Docs18th September 2026

IEC 31010:2019 explained: the 41 techniques in 10 categories, what changed from 2009, how clause 7 says to…
Read More
inherent vs residual risk explained

Inherent vs Residual Risk: The Complete 4-Column Register Guide

Governance Docs18th September 2026

Inherent vs residual risk defined by COSO ERM and ISO 31000, the 4 register columns (inherent, current, residual,…
Read More
ISO 31000 vs COSO ERM explained

ISO 31000 vs COSO ERM: 5 Clear Differences Explained (2026)

Governance Docs18th September 2026

ISO 31000 vs COSO ERM on 5 differences: purpose and audience, structure, the risk process, strategy, origin —…
Read More
SAMA Cyber Threat Intelligence Principles explained

SAMA Cyber Threat Intelligence Principles: A Clear 19-Point Guide

Governance Docs18th September 2026

The SAMA Cyber Threat Intelligence Principles (2022): 19 principles in 4 domains — core, strategic, operational, technical and…
Read More
SAMA cloud computing requirements explained

SAMA Cloud Computing Requirements: The Complete 3.4.3 Guide (2026)

Governance Docs18th September 2026

SAMA cloud computing requirements in CSF 3.4.3: SAMA approval before use or contract, data in Saudi Arabia unless…
Read More
    ←
  • 1
  • 2
  • 3
  • 4
  • …
  • 8
  • →

Recent Posts

ISO 27001 configuration management requirements under Annex A 8.9 - established, documented, implemented, monitored, reviewed
ISO 27001 Configuration Management: Complete 2026 Guide

October 11, 2026

internal audit findings rating scale — Internal Audit Findings Rating Scale: Examples and Template
Internal Audit Findings Rating Scale: Examples and Template

October 11, 2026

third party topical requirement — Third Party Topical Requirement: The 2026 Audit Guide
Third Party Topical Requirement: The 2026 Audit Guide

October 11, 2026

cybersecurity topical requirement — Cybersecurity Topical Requirement: How to Audit It in 2026
Cybersecurity Topical Requirement: How to Audit It in 2026

October 11, 2026

quality assurance and improvement program — Quality Assurance and Improvement Program (QAIP): 2026 Guide
Quality Assurance and Improvement Program (QAIP): 2026 Guide

October 11, 2026

Categories

  • Articles
  • DORA
  • GDPR
  • HIPAA
  • ISO 27001
  • ISO 42001 & AI governance
  • ISO 9001
  • Management systems
  • NIS2
  • Security frameworks
  • SOC 2
Governance DocsGovernance Docs

Reliable ISO & compliance documentation toolkits that help your business meet regulatory standards with ease.

Governance Docs LLC
1209 Mountain Road Pl NE, Suite R
Albuquerque, NM 87110, USA
info@governancedocs.com
+1 505 289 2455

Toolkits

  • ISO 27001:2022
  • GDPR
  • SOC 2
  • PCI-DSS v4.0
  • HIPAA
  • ISO 42001
  • All toolkits →

Company

  • About Us
  • Blog
  • Contact
  • FAQ
  • Which toolkit do I need?
  • Free templates
  • SoA generator
  • Assessments
  • Sample reports
  • RSS feeds

Policies

  • Privacy Policy
  • Terms & Conditions
  • Refund & Return Policy
  • Delivery Policy
  • Manage cookies
Browse by topicISO 27001ISO 42001 & AI governanceGDPRSOC 2HIPAANIS2DORAISO 9001Management systemsSecurity frameworks
© 2026 Governance Docs LLC. All rights reserved.
Secure checkoutstripeVISA