About Us Contact Blog
Governance DocsGovernance Docs
Which Toolkit?SoA GeneratorFree TemplatesSample ReportsRecords of Processing (ROPA)Data Privacy Impact AssessmentLegitimate Interests AssessmentTransfer Impact AssessmentPrivacy Risk AssessmentGDPR Gap AssessmentISO 27701 Gap AssessmentHIPAA Gap AssessmentGap AssessmentsBusiness Impact AnalysisISO 27001 Risk AssessmentContinuity Risk AssessmentEnterprise Risk AssessmentAI Risk AssessmentAI Impact AssessmentThird-Party Risk AssessmentAboutBlogContactMy AccountCart
FOX v.2.4.9
Browse Toolkits
Governance Docs
  • Browse All Toolkits
  • Information Security & Cybersecurity
  • Data Privacy & Protection
  • Governance, Risk & Compliance
  • Quality Management
  • Health, Safety & Environment
  • AI Governance

My Account

CART

No products in the cart.

Day: September 29, 2026

FSSC 22000 unannounced audit rules and preparation

FSSC 22000 Unannounced Audit: Rules and Preparation 2026

Governance Docs29th September 2026

What to expect from an FSSC 22000 unannounced audit, including blackout dates, findings and how to stay ready…
Read More
FedRAMP 20x KSI Key Security Indicators themes and validation

FedRAMP 20x KSI: Key Security Indicators Explained 2026

Governance Docs29th September 2026

FedRAMP 20x replaces control narratives with Key Security Indicators. See the themes, validation modes and how to prepare.
Read More
IVDR post-market surveillance PMS report PSUR by device class

IVDR Post-Market Surveillance: PMS Plan, Report and PSUR 2026

Governance Docs29th September 2026

What the IVDR requires after CE marking: the PMS plan, PMS reports, PSURs by class, PMPF and trend…
Read More
CAIQ security questionnaire answer library from CSA STAR Level 1

CAIQ Security Questionnaire: Build a Reusable Answer Library 2026

Governance Docs29th September 2026

Build a CAIQ security questionnaire answer library from your STAR Level 1 submission to answer customer reviews faster…
Read More
COSO risk appetite Principle 7 ERM guide

COSO Risk Appetite: Principle 7 Guide with Examples 2026

Governance Docs29th September 2026

Learn what COSO ERM Principle 7 requires, how appetite differs from tolerance and how to turn a statement…
Read More
CIS Controls safe harbor state cybersecurity laws

CIS Controls Safe Harbor: State Law Protection in 2026

Governance Docs29th September 2026

Some US states give legal protection to organisations that conform to recognised frameworks. See how the CIS Controls…
Read More
CCPA opt-out preference signal Global Privacy Control compliance

CCPA Opt-Out Preference Signal: GPC Compliance Guide 2026

Governance Docs29th September 2026

Section 7025 requires businesses to honour opt-out preference signals such as GPC. Learn what to build, test and…
Read More
BSI C5 report review checklist for cloud customers

BSI C5 Report Review: A Customer Checklist for 2026

Governance Docs29th September 2026

A practical checklist for cloud customers reading a BSI C5 attestation report: scope, deviations, shared responsibility and subservice…
Read More
AS9100 configuration management clause 8.1.2 process

AS9100 Configuration Management: Clause 8.1.2 Guide 2026

Governance Docs29th September 2026

A practical guide to AS9100D clause 8.1.2: how to scope, identify and control configuration, with change control steps…
Read More
WISP service provider oversight under the FTC Safeguards Rule

WISP Service Provider Oversight: Safeguards Rule Guide 2026

Governance Docs29th September 2026

A practical guide to service provider oversight in your written information security plan under the FTC Safeguards Rule.
Read More
UK IDTA and Addendum international transfer tools comparison

UK IDTA and Addendum: Which to Use in 2026

Governance Docs29th September 2026

Choosing between the UK IDTA and the Addendum for restricted transfers, and the transfer risk assessment that must…
Read More
SWIFT CSP non-compliance consequences and recovery plan

SWIFT CSP Non-Compliance: Consequences and Recovery 2026

Governance Docs29th September 2026

SWIFT CSP non-compliance is visible to supervisors and counterparties. Learn the categories, consequences and a practical recovery plan.
Read More
    ←
  • 1
  • …
  • 4
  • 5
  • 6
  • 7
  • 8
  • …
  • 10
  • →

Recent Posts

Gap assessment reassessment progress comparison diagram
Gap Assessment Reassessment: The Essential 2026 Guide to Measuring Progress

September 30, 2026

Business continuity supply chain risk map diagram
Business Continuity Supply Chain Risk: The Essential 2026 Guide to Resilient Suppliers

September 30, 2026

Business continuity risk appetite statement diagram
Business Continuity Risk Appetite: The Essential 2026 Guide to Setting Tolerance for Disruption

September 30, 2026

Business continuity risk monitoring indicators diagram
Business Continuity Risk Monitoring: The Essential 2026 Guide to Indicators and Reviews

September 30, 2026

Business continuity scenario planning steps diagram
Business Continuity Scenario Planning: The Essential 2026 Guide to Testing Your Plans

September 30, 2026

Categories

  • Articles
  • DORA
  • GDPR
  • HIPAA
  • ISO 27001
  • ISO 42001 & AI governance
  • ISO 9001
  • Management systems
  • NIS2
  • Security frameworks
  • SOC 2
Governance DocsGovernance Docs

Reliable ISO & compliance documentation toolkits that help your business meet regulatory standards with ease.

Governance Docs LLC
1209 Mountain Road Pl NE, Suite R
Albuquerque, NM 87110, USA
info@governancedocs.com
+1 812 227 5662

Toolkits

  • ISO 27001:2022
  • GDPR
  • SOC 2
  • PCI-DSS v4.0
  • HIPAA
  • ISO 42001
  • All toolkits →

Company

  • About Us
  • Blog
  • Contact
  • FAQ
  • Which toolkit do I need?
  • Free templates
  • SoA generator
  • Assessments
  • Sample reports
  • RSS feeds

Policies

  • Privacy Policy
  • Terms & Conditions
  • Refund & Return Policy
  • Delivery Policy
  • Manage cookies
Browse by topicISO 27001ISO 42001 & AI governanceGDPRSOC 2HIPAANIS2DORAISO 9001Management systemsSecurity frameworks
© 2026 Governance Docs LLC. All rights reserved.
Secure checkoutstripeVISA