About Us Contact Blog
Governance DocsGovernance Docs
All ToolkitsWhich Toolkit?AboutBlogContactMy AccountCart
FOX v.2.4.9
Browse Toolkits
Governance Docs
  • Browse All Toolkits
  • Information Security & Cybersecurity
  • Data Privacy & Protection
  • Governance, Risk & Compliance
  • Quality Management
  • Health, Safety & Environment
  • AI Governance

My Account

CART

No products in the cart.

Author: Governance Docs

Governance Docs LLC

HIPAA BAA guide - what a business associate agreement is and its required provisions

HIPAA Business Associate Agreement (BAA): A Guide

Governance Docs17th July 2026

A HIPAA BAA is required whenever a vendor handles protected health information for you. Here is what a…
Read More
HIPAA compliance checklist covering Privacy Rule, Security Rule, breach notification and BAAs

HIPAA Compliance Checklist for Vendors & Small Practices

Governance Docs17th July 2026

A practical HIPAA compliance checklist, organised by the Privacy and Security Rules, breach notification, and business associates -…
Read More
HIPAA risk assessment steps from mapping ePHI to risk management and remediation

How to Conduct a HIPAA Risk Assessment

Governance Docs17th July 2026

The HIPAA risk assessment is the foundation of the Security Rule. Here is what it is, why it…
Read More
HIPAA Security Rule vs Privacy Rule - protecting electronic PHI versus governing use and disclosure

HIPAA Security Rule vs Privacy Rule Explained

Governance Docs17th July 2026

HIPAA Security Rule vs Privacy Rule: one protects electronic health data, the other governs its use and disclosure.…
Read More
HIPAA policies checklist including privacy, security, risk assessment and breach notification

HIPAA Required Policies & Documentation Checklist

Governance Docs17th July 2026

HIPAA requires documented policies and procedures. Here are the essential HIPAA policies, the records you must keep, and…
Read More
SOC 2 cost and timeline factors including scope, report type, size and readiness

SOC 2 Cost & Timeline: What to Expect

Governance Docs17th July 2026

What does SOC 2 cost and how long does it take? Here are the main cost factors, the…
Read More
SOC 2 audit preparation covering scoping, readiness assessment, controls and evidence

How to Prepare for a SOC 2 Audit

Governance Docs17th July 2026

The SOC 2 audit tests your controls independently. Here is what it involves, the process, how to prepare,…
Read More
SOC 2 documentation checklist of policies and evidence mapped to the Trust Services Criteria

SOC 2 Policies & Documentation Checklist

Governance Docs17th July 2026

SOC 2 documentation turns security practice into an auditable report. Here are the essential policies, the evidence you…
Read More
SOC 2 Type 1 vs Type 2 comparison of control design at a point in time versus operating effectiveness

SOC 2 Type 1 vs Type 2: What’s the Difference?

Governance Docs17th July 2026

SOC 2 Type 1 vs Type 2: one tests control design at a point in time, the other…
Read More
SOC 2 Trust Services Criteria explained - security, availability, processing integrity, confidentiality and privacy

SOC 2 Trust Services Criteria Explained

Governance Docs17th July 2026

The SOC 2 Trust Services Criteria define what your auditor evaluates. Here are all five - security, availability,…
Read More
GDPR gap analysis steps from mapping data to building a prioritised remediation plan

How to Run a GDPR Gap Analysis

Governance Docs17th July 2026

A GDPR gap analysis shows exactly where you stand against the regulation. Here is a step-by-step method to…
Read More
GDPR data subject rights explained including access, rectification, erasure and portability

GDPR Data Subject Rights Explained

Governance Docs17th July 2026

The GDPR data subject rights put individuals in control of their data. Here are all eight rights, how…
Read More
    ←
  • 1
  • …
  • 13
  • 14
  • 15
  • 16
  • 17
  • …
  • 20
  • →

Recent Posts

How to weight the clauses in an ISO 22301 gap analysis
ISO 22301 Gap Analysis: 6 Proven Rules for a Plan That Lands

August 16, 2026

What each ISO 27001 certification audit stage tests in a readiness assessment
ISO 27001 Readiness Assessment: 6 Proven Checks

August 16, 2026

What the ePrivacy Directive and the GDPR each require for cookie consent
Cookie Consent: 6 Proven Rules Article 5(3) Sets

August 16, 2026

What replaced the FedRAMP authorization boundary in the Consolidated Rules for 2026
Authorization Boundary: 6 Proven Steps for FedRAMP 2026

August 16, 2026

What the Framework Directive and ISO 45003 each establish about psychosocial risk
Psychosocial Risk: 6 Proven Steps for ISO 45001

August 16, 2026

Categories

  • Articles
  • DORA
  • GDPR
  • HIPAA
  • ISO 27001
  • ISO 42001 & AI governance
  • ISO 9001
  • Management systems
  • NIS2
  • Security frameworks
  • SOC 2
Governance DocsGovernance Docs

Reliable ISO & compliance documentation toolkits that help your business meet regulatory standards with ease.

Governance Docs LLC
1209 Mountain Road Pl NE, Suite R
Albuquerque, NM 87110, USA
info@governancedocs.com
+1 812 227 5662

Toolkits

  • ISO 27001:2022
  • GDPR
  • SOC 2
  • PCI-DSS v4.0
  • HIPAA
  • ISO 42001
  • All toolkits →

Company

  • About Us
  • Blog
  • Contact
  • FAQ
  • Which toolkit do I need?
  • Free templates

Policies

  • Privacy Policy
  • Terms & Conditions
  • Refund & Return Policy
  • Delivery Policy
Browse by topicISO 27001ISO 42001 & AI governanceGDPRSOC 2HIPAANIS2DORAISO 9001Management systemsSecurity frameworks
© 2026 Governance Docs LLC. All rights reserved.
Secure checkoutstripeVISA