About Us Contact Blog
Governance DocsGovernance Docs
Which Toolkit?SoA GeneratorFree TemplatesGap AssessmentsBusiness Impact AnalysisAboutBlogContactMy AccountCart
FOX v.2.4.9
Browse Toolkits
Governance Docs
  • Browse All Toolkits
  • Information Security & Cybersecurity
  • Data Privacy & Protection
  • Governance, Risk & Compliance
  • Quality Management
  • Health, Safety & Environment
  • AI Governance

My Account

CART

No products in the cart.

Author: Governance Docs

Governance Docs LLC

ESG policy explained

ESG Policy: A Clear Guide to the 6 Sections

Governance Docs17th September 2026

An ESG policy in 6 sections — scope, material topics, dated commitments, accountability, implementation and KPIs, review and…
Read More
ESG KPIs explained

ESG KPIs: A Clear Guide to the 12 Metrics Boards Ask For

Governance Docs17th September 2026

The 12 ESG KPIs boards ask for across E, S and G, each with its unit and source…
Read More
Scope 1, 2 and 3 emissions explained

Scope 1, 2 and 3 Emissions: A Clear Guide for ESG Reporting

Governance Docs17th September 2026

Scope 1, 2 and 3 emissions under the GHG Protocol: what each scope holds, the 15 Scope 3…
Read More
ESG vs CSR explained

ESG vs CSR: A Clear Guide to the 4 Differences in 2026

Governance Docs17th September 2026

ESG vs CSR on 4 differences — audience, basis, measurement, consequence — where a CSR program becomes an…
Read More
vulnerability management metrics explained

Vulnerability Management Metrics: 5 Critical Indicators for 2026

Governance Docs17th September 2026

The 5 vulnerability management metrics that matter — exposure, MTTR by severity, SLA adherence, backlog age, scan coverage…
Read More
cyber risk quantification explained

Cyber Risk Quantification: A Clear Guide to FAIR Indicators

Governance Docs17th September 2026

Cyber risk quantification with FAIR: the factors from threat event frequency to loss magnitude, the 5 indicators it…
Read More
NIST SP 800-55 explained

NIST SP 800-55: A Clear Guide to Security Measurement Indicators

Governance Docs17th September 2026

NIST SP 800-55 (December 2024, two volumes): the 4 measure types, the 10 documentation fields, what makes a…
Read More
MTTD vs MTTR explained

MTTD vs MTTR: A Clear Guide to the 4 Cyber Response Indicators

Governance Docs17th September 2026

MTTD vs MTTR explained as 4 clocks on one incident timeline — detect, acknowledge, contain, recover — with…
Read More
board cybersecurity reporting explained

Board Cybersecurity Reporting: A Clear Guide to the 6 Indicators

Governance Docs17th September 2026

Board cybersecurity reporting built on 6 indicators — exposure, control coverage, detection and response speed, incident impact, third-party…
Read More
ISO 27001 assessment report explained

ISO 27001 Assessment Report: A Clear Guide to the 6 Sections

Governance Docs17th September 2026

The ISO 27001 assessment report in 6 sections — summary, method, clause results, Annex A results, findings, action…
Read More
supplier security assessment explained

Supplier Security Assessment: A Clear ISO 27001 Guide for 2026

Governance Docs17th September 2026

A supplier security assessment under ISO 27001 controls A.5.19–A.5.22: tier suppliers, what to ask, what evidence to accept,…
Read More
ISO 27001 control assessment explained

ISO 27001 Control Assessment: A Clear Annex A Scoring Guide

Governance Docs17th September 2026

The ISO 27001 control assessment: scoring all 93 Annex A controls for applicability, implementation and evidence, with the…
Read More
    ←
  • 1
  • …
  • 18
  • 19
  • 20
  • 21
  • 22
  • …
  • 68
  • →

Recent Posts

Infographic answering is ISO 13485 worth it in 2026 with audit days, QMSR date and MDSAP regulators
Is ISO 13485 Worth It? The Complete 2026 Cost-Benefit Case

September 25, 2026

Is ISO 42001 worth it in 2026 — audit days, first-year cost and Annex A controls at a glance
Is ISO 42001 Worth It? The Complete 2026 Cost-Benefit Case

September 25, 2026

Is SOC 2 worth it in 2026 — typical first-year cost, annual report cycle and attestation status
Is SOC 2 Worth It? The Complete 2026 Cost-Benefit Case

September 24, 2026

ISO 21502 vs PMBOK 8 comparison: the 2020 project management guidance against PMI six principles, five Focus Areas and seven Performance Domains
ISO 21502 vs PMBOK 8: The Complete 2026 Guide for Project Governance

September 24, 2026

ISO 31000 vs ISO 27005 comparison: 2018 risk management guidelines against the 2022 information security risk guidance
ISO 31000 vs ISO 27005: The Definitive 2026 Guide

September 24, 2026

Categories

  • Articles
  • DORA
  • GDPR
  • HIPAA
  • ISO 27001
  • ISO 42001 & AI governance
  • ISO 9001
  • Management systems
  • NIS2
  • Security frameworks
  • SOC 2
Governance DocsGovernance Docs

Reliable ISO & compliance documentation toolkits that help your business meet regulatory standards with ease.

Governance Docs LLC
1209 Mountain Road Pl NE, Suite R
Albuquerque, NM 87110, USA
info@governancedocs.com
+1 812 227 5662

Toolkits

  • ISO 27001:2022
  • GDPR
  • SOC 2
  • PCI-DSS v4.0
  • HIPAA
  • ISO 42001
  • All toolkits →

Company

  • About Us
  • Blog
  • Contact
  • FAQ
  • Which toolkit do I need?
  • Free templates
  • SoA generator
  • Gap assessments
  • Business impact analysis
  • RSS feeds

Policies

  • Privacy Policy
  • Terms & Conditions
  • Refund & Return Policy
  • Delivery Policy
  • Manage cookies
Browse by topicISO 27001ISO 42001 & AI governanceGDPRSOC 2HIPAANIS2DORAISO 9001Management systemsSecurity frameworks
© 2026 Governance Docs LLC. All rights reserved.
Secure checkoutstripeVISA