About Us Contact Blog
Governance DocsGovernance Docs
Which Toolkit?SoA GeneratorFree TemplatesSample ReportsFind the Right AssessmentRecords of Processing (ROPA)Data Privacy Impact AssessmentLegitimate Interests AssessmentTransfer Impact AssessmentPrivacy Risk AssessmentGDPR Gap AssessmentUK GDPR Gap AssessmentCCPA/CPRA Gap AssessmentISO 27701 Gap AssessmentHIPAA Gap AssessmentISO 27001 Risk AssessmentThird-Party Risk AssessmentSoA GeneratorISO 27001 Assessment Tool (Excel)ISO 27001 Gap AssessmentSOC 2 Gap AssessmentNIST CSF 2.0 Gap AssessmentNIST SP 800-53 Gap AssessmentNIST RMF Gap AssessmentCIS Controls Gap AssessmentPCI DSS 4.0 Gap AssessmentNIS2 Gap AssessmentCMMC 2.0 Gap AssessmentNIST SP 800-171 Gap AssessmentFedRAMP Gap AssessmentBSI C5 Gap AssessmentIEC 62443 Gap AssessmentSAMA CSF Gap AssessmentNCA ECC Gap AssessmentISO 20000 Gap AssessmentAI Risk AssessmentAI Impact AssessmentISO 42001 Gap AssessmentEU AI Act Gap AssessmentBusiness Impact AnalysisContinuity Risk AssessmentISO 22301 Assessment Tool (Excel)ISO 22301 Gap AssessmentDORA Gap AssessmentISO 9001 Gap AssessmentISO 13485 Gap AssessmentIATF 16949 Gap AssessmentISO 14001 Gap AssessmentISO 45001 Gap AssessmentISO 45001 Assessment Tool (Excel)HACCP Gap AssessmentEnterprise Risk AssessmentISO 31000 Gap AssessmentData Governance Gap AssessmentProject Management Gap AssessmentAll Gap AssessmentsAboutBlogContactMy AccountCart
FOX v.2.4.9
Browse Toolkits
Governance Docs
  • Browse All Toolkits
  • Information Security & Cybersecurity
  • Data Privacy & Protection
  • Governance, Risk & Compliance
  • Quality Management
  • Health, Safety & Environment
  • AI Governance

My Account

CART

No products in the cart.

Day: October 10, 2026

ISO 27001 data leakage prevention under Annex A control 8.12 — identify, monitor and act on sensitive data channels

ISO 27001 Data Leakage Prevention: Complete 2026 Guide

Governance Docs10th October 2026

ISO 27001 data leakage prevention is Annex A 8.12, one of 11 new 2022 controls. What it requires,…
Read More
CRA and IEC 62443 mapping overview for industrial product manufacturers

CRA and IEC 62443: The Essential 2026 Mapping Guide

Governance Docs10th October 2026

Does IEC 62443 help with the EU Cyber Resilience Act? Yes, but certification currently gives no presumption of…
Read More
OT incident response plan guide covering IEC 62443 SPE 7 alignment, NIS2 reporting deadlines and OT playbooks

OT Incident Response Plan: The Complete 2026 Guide

Governance Docs10th October 2026

How an OT incident response plan differs from an IT one, the 12 sections it needs, how it…
Read More
OT asset inventory guide card covering the IEC 62443 SUC, SPE 2, CISA priority attributes and passive discovery

OT Asset Inventory: The Complete 2026 Guide for IEC 62443

Governance Docs10th October 2026

How to build and maintain an OT asset inventory for IEC 62443: the attributes to capture, four discovery…
Read More
IEC 62443 vs NIST CSF comparison of scope, certification and mapping for OT security

IEC 62443 vs NIST CSF: The Complete 2026 Comparison

Governance Docs10th October 2026

NIST CSF 2.0 gives the board an outcome view; IEC 62443 gives plant engineers testable requirements. Compare scope,…
Read More
IEC 62443 vs NIST 800-82 comparison of a certifiable OT standard series and free NIST OT security guidance

IEC 62443 vs NIST 800-82: The Complete 2026 Comparison

Governance Docs10th October 2026

IEC 62443 is a certifiable, paid standard series; NIST SP 800-82 is free US guidance. Compare risk methods,…
Read More
IEC 62443 implementation roadmap showing nine phases and typical durations for single-site and multi-site programs

IEC 62443 Implementation: The Complete 2026 Roadmap

Governance Docs10th October 2026

How long IEC 62443 implementation takes and what happens in each phase: nine steps from scope to evidence,…
Read More
IEC 62443 gap analysis steps for asset owners: scoping, evidence sampling, maturity rating and SL-T vs SL-A comparison

IEC 62443 Gap Analysis: The Complete 2026 Guide

Governance Docs10th October 2026

How asset owners run an IEC 62443 gap analysis: scope 2-1, 3-2/3-3 and 2-4, assess against 2-1:2024, sample…
Read More
IEC 62443 documentation set for asset owners organized by part and security program element

IEC 62443 Documentation: The Complete 2026 Asset Owner Guide

Governance Docs10th October 2026

What IEC 62443 documentation an asset owner needs, organized by part and by the 8 security program elements,…
Read More
IEC 62443 audit checklist for asset owners preparing an internal audit or ISASecure ACSSA evaluation

IEC 62443 Audit Checklist 2026: The Essential Prep Guide

Governance Docs10th October 2026

A practical IEC 62443 audit checklist for asset owners: 19 questions mapped to the 2-1:2024 SPEs, 3-2, 3-3…
Read More
IEC 62443-4-2 component types, foundational requirements and capability security levels summary

IEC 62443-4-2: The Complete 2026 Component Security Guide

Governance Docs10th October 2026

A practical guide to IEC 62443-4-2 for product teams and buyers: the four component types, CRs under seven…
Read More
IEC 62443-3-3 overview showing 7 foundational requirements, 51 system requirements and security levels

IEC 62443-3-3: Complete 2026 Guide to 51 System Requirements

Governance Docs10th October 2026

IEC 62443-3-3 in practice: the 7 foundational requirements, the 51 system requirements counted by FR, how SL-C and…
Read More
  • 1
  • 2
  • →

Recent Posts

ISO 27001 configuration management requirements under Annex A 8.9 - established, documented, implemented, monitored, reviewed
ISO 27001 Configuration Management: Complete 2026 Guide

October 11, 2026

internal audit findings rating scale — Internal Audit Findings Rating Scale: Examples and Template
Internal Audit Findings Rating Scale: Examples and Template

October 11, 2026

third party topical requirement — Third Party Topical Requirement: The 2026 Audit Guide
Third Party Topical Requirement: The 2026 Audit Guide

October 11, 2026

cybersecurity topical requirement — Cybersecurity Topical Requirement: How to Audit It in 2026
Cybersecurity Topical Requirement: How to Audit It in 2026

October 11, 2026

quality assurance and improvement program — Quality Assurance and Improvement Program (QAIP): 2026 Guide
Quality Assurance and Improvement Program (QAIP): 2026 Guide

October 11, 2026

Categories

  • Articles
  • DORA
  • GDPR
  • HIPAA
  • ISO 27001
  • ISO 42001 & AI governance
  • ISO 9001
  • Management systems
  • NIS2
  • Security frameworks
  • SOC 2
Governance DocsGovernance Docs

Reliable ISO & compliance documentation toolkits that help your business meet regulatory standards with ease.

Governance Docs LLC
1209 Mountain Road Pl NE, Suite R
Albuquerque, NM 87110, USA
info@governancedocs.com
+1 505 289 2455

Toolkits

  • ISO 27001:2022
  • GDPR
  • SOC 2
  • PCI-DSS v4.0
  • HIPAA
  • ISO 42001
  • All toolkits →

Company

  • About Us
  • Blog
  • Contact
  • FAQ
  • Which toolkit do I need?
  • Free templates
  • SoA generator
  • Assessments
  • Sample reports
  • RSS feeds

Policies

  • Privacy Policy
  • Terms & Conditions
  • Refund & Return Policy
  • Delivery Policy
  • Manage cookies
Browse by topicISO 27001ISO 42001 & AI governanceGDPRSOC 2HIPAANIS2DORAISO 9001Management systemsSecurity frameworks
© 2026 Governance Docs LLC. All rights reserved.
Secure checkoutstripeVISA