About Us Contact Blog
Governance DocsGovernance Docs
Which Toolkit?SoA GeneratorFree TemplatesAboutBlogContactMy AccountCart
FOX v.2.4.9
Browse Toolkits
Governance Docs
  • Browse All Toolkits
  • Information Security & Cybersecurity
  • Data Privacy & Protection
  • Governance, Risk & Compliance
  • Quality Management
  • Health, Safety & Environment
  • AI Governance

My Account

CART

No products in the cart.

Author: Governance Docs

Governance Docs LLC

ISO 27001 recertification audit timeline showing the three-year certification cycle from Stage 1 and Stage 2 through surveillance audits to year three reassessment

ISO 27001 Recertification Audit: The Complete 2026 Guide

Governance Docs21st August 2026

What happens at the year-three ISO 27001 recertification audit: the ISO/IEC 17021-1 timing rules, what auditors sample, typical…
Read More
Phishing-resistant MFA methods compared against NIST SP 800-63B-4 assurance levels

Phishing-Resistant MFA: The Complete 2026 Guide

Governance Docs20th August 2026

Phishing-resistant MFA under NIST SP 800-63B-4: which methods qualify, what AAL2 and AAL3 each require, and why synced…
Read More
Cybersecurity governance obligations under NIS2, DORA, ISO 27001 and NIST CSF 2.0

Cybersecurity Governance: The Definitive 2026 Board Guide

Governance Docs20th August 2026

Cybersecurity governance after NIS2: what boards must approve, why NIST CSF 2.0 added a 6th function, and the…
Read More
Clean desk policy rules for ISO 27001 Annex A 7.7 clear desk and clear screen

Clean Desk Policy: 9 Essential Rules for 2026

Governance Docs20th August 2026

A clean desk policy that passes an ISO 27001 audit: what Annex A 7.7 requires, the 9 rules…
Read More
BYOD policy requirements mapped to ISO 27001:2022 Annex A controls

BYOD Policy: The Essential 2026 Guide for ISO 27001

Governance Docs20th August 2026

A BYOD policy that survives an ISO 27001 audit: the 7 Annex A controls it satisfies, the 9…
Read More
PCI DSS documentation and evidence checklist for v4.0.1 assessments

PCI DSS Documentation: The Complete 2026 Evidence Checklist

Governance Docs20th August 2026

PCI DSS documentation a QSA actually asks for: the 12 requirement areas, the 51 future-dated controls effective 31…
Read More
ISO 27001 vs ISO 42001 comparison chart showing 93 security controls against 38 AI controls

ISO 27001 vs ISO 42001: The Complete 2026 Comparison Guide

Governance Docs20th August 2026

ISO 27001 vs ISO 42001 compared for 2026: 93 security controls versus 38 AI controls, the shared clause…
Read More
ISO 27001 vs ISO 27002 comparison chart showing the 19-page requirements standard against the 152-page implementation guidance

ISO 27001 vs ISO 27002: The Complete 2026 Guide to Which One You Need

Governance Docs19th August 2026

ISO 27001 vs ISO 27002 explained: one is a 19-page certifiable requirements standard, the other 152 pages of…
Read More
ISO 27001 scope diagram showing organizational, physical and logical ISMS boundaries under Clause 4.3

ISO 27001 Scope: The Complete 2026 Guide to Defining Your ISMS

Governance Docs18th August 2026

Your ISO 27001 scope decides your audit days, your workload and what your certificate says. Clause 4.3 rules,…
Read More
ISO 27001 surveillance audit timeline showing the three-year certification cycle

ISO 27001 Surveillance Audit: The Complete 2026 Guide

Governance Docs17th August 2026

What an ISO 27001 surveillance audit covers, when it is due, what it costs in 2026, and how…
Read More
How to weight the clauses in an ISO 22301 gap analysis

ISO 22301 Gap Analysis: 6 Proven Rules for a Plan That Lands

Governance Docs16th August 2026

Clause 8.2 carries everything built on top of it, and 8.5 cannot be closed on paper. How to…
Read More
What each ISO 27001 certification audit stage tests in a readiness assessment

ISO 27001 Readiness Assessment: 6 Proven Checks

Governance Docs16th August 2026

A gap analysis asks what is missing. A readiness assessment asks whether you would pass Stage 2 —…
Read More
    ←
  • 1
  • …
  • 15
  • 16
  • 17
  • 18
  • 19
  • …
  • 37
  • →

Recent Posts

Infographic explaining who does the FTC Safeguards Rule apply to under 16 CFR Part 314
Who Does the FTC Safeguards Rule Apply To? The Complete 2026 Guide

September 5, 2026

User access review process mapped to ISO 27001 Annex A 5.18, SOC 2 CC6.3 and PCI DSS 7.2.4
User Access Review: A Complete 2026 Guide for ISO 27001 and SOC 2

September 4, 2026

NIST Privacy Framework data map — NIST Privacy Framework Data Map: How to Build One (ID.IM-P8)
NIST Privacy Framework Data Map: How to Build One (ID.IM-P8)

September 3, 2026

NIST Privacy Framework vs ISO 27701 — NIST Privacy Framework vs ISO 27701: Which One in 2026?
NIST Privacy Framework vs ISO 27701: Which One in 2026?

September 3, 2026

NIST Privacy Framework vs GDPR — NIST Privacy Framework vs GDPR: How They Fit Together
NIST Privacy Framework vs GDPR: How They Fit Together

September 3, 2026

Categories

  • Articles
  • DORA
  • GDPR
  • HIPAA
  • ISO 27001
  • ISO 42001 & AI governance
  • ISO 9001
  • Management systems
  • NIS2
  • Security frameworks
  • SOC 2
Governance DocsGovernance Docs

Reliable ISO & compliance documentation toolkits that help your business meet regulatory standards with ease.

Governance Docs LLC
1209 Mountain Road Pl NE, Suite R
Albuquerque, NM 87110, USA
info@governancedocs.com
+1 812 227 5662

Toolkits

  • ISO 27001:2022
  • GDPR
  • SOC 2
  • PCI-DSS v4.0
  • HIPAA
  • ISO 42001
  • All toolkits →

Company

  • About Us
  • Blog
  • Contact
  • FAQ
  • Which toolkit do I need?
  • Free templates
  • SoA generator
  • RSS feeds

Policies

  • Privacy Policy
  • Terms & Conditions
  • Refund & Return Policy
  • Delivery Policy
Browse by topicISO 27001ISO 42001 & AI governanceGDPRSOC 2HIPAANIS2DORAISO 9001Management systemsSecurity frameworks
© 2026 Governance Docs LLC. All rights reserved.
Secure checkoutstripeVISA