About Us Contact Blog
Governance DocsGovernance Docs
Which Toolkit?SoA GeneratorFree TemplatesGap AssessmentsBusiness Impact AnalysisAboutBlogContactMy AccountCart
FOX v.2.4.9
Browse Toolkits
Governance Docs
  • Browse All Toolkits
  • Information Security & Cybersecurity
  • Data Privacy & Protection
  • Governance, Risk & Compliance
  • Quality Management
  • Health, Safety & Environment
  • AI Governance

My Account

CART

No products in the cart.

Author: Governance Docs

Governance Docs LLC

Setting risk criteria under ISO 31000

Risk Criteria: A Clear Guide to Setting Them Under ISO 31000

Governance Docs02nd September 2026

Risk criteria under ISO 31000: the 6 decisions to make before assessing anything, how they differ from risk…
Read More
The twenty NIST 800-53 control families

NIST 800-53 Control Families: A Clear Guide to All 20

Governance Docs02nd September 2026

All 20 NIST 800-53 control families with their two-letter IDs, base controls versus enhancements, and the 3 families…
Read More
Critical ICT third-party providers under DORA oversight

Critical ICT Third-Party Providers: A Clear DORA Guide for 2026

Governance Docs02nd September 2026

Critical ICT third-party providers under DORA: the 4 designation criteria, how a Lead Overseer is chosen, and the…
Read More
DORA incident reporting deadlines explained

DORA Incident Reporting: A Clear Guide to the 4-Hour Rule

Governance Docs02nd September 2026

DORA incident reporting has 3 deadlines: 4 hours from classification, 72 hours for the intermediate report, one month…
Read More
The cybersecurity risk register template elements

Cybersecurity Risk Register: A Clear Guide to the 10 Elements

Governance Docs02nd September 2026

A cybersecurity risk register in 10 elements, from NIST IR 8286 Revision 1 - what each field is…
Read More
The seven steps of the NIST RMF

NIST RMF: A Clear Guide to the 7 Steps of SP 800-37

Governance Docs02nd September 2026

The NIST RMF in 7 steps, from Prepare to Monitor, with the publication behind each - and how…
Read More
OPRP versus CCP under ISO 22000

OPRP vs CCP: A Clear Guide to Effective ISO 22000 Hazard Control

Governance Docs02nd September 2026

OPRP vs CCP under ISO 22000: a CCP has a measurable critical limit, an OPRP an action criterion.…
Read More
The four tiers of QHSE documentation

QHSE Documentation: A Clear Guide to the 4 Tiers

Governance Docs02nd September 2026

QHSE documentation works when the tiers are decided first: manual, procedures, work instructions, records. What belongs in each…
Read More
The COSO 17 principles of internal control

COSO 17 Principles: A Clear Guide to the 5 Components

Governance Docs02nd September 2026

The COSO 17 principles listed by component, plus the present-and-functioning test, what counts as a major deficiency, and…
Read More
The HACCP plan and the twelve Codex steps

HACCP Plan: A Clear Guide to the 12 Codex Steps

Governance Docs02nd September 2026

A HACCP plan is built from the 12 Codex steps - 5 preliminary steps then the 7 principles.…
Read More
The four types of ISO 45001 assessment

ISO 45001 Assessment: A Clear Guide to the 4 Types

Governance Docs02nd September 2026

An ISO 45001 assessment can mean 4 things: self-assessment, gap analysis, internal audit or certification audit. What each…
Read More
CIS Benchmarks compared with the CIS Controls

CIS Benchmarks vs CIS Controls: A Clear Guide for 2026

Governance Docs02nd September 2026

CIS Benchmarks are configuration guides; CIS Controls are a prioritized program. What each covers, the 3 profile levels,…
Read More
    ←
  • 1
  • …
  • 37
  • 38
  • 39
  • 40
  • 41
  • …
  • 68
  • →

Recent Posts

Infographic answering is ISO 13485 worth it in 2026 with audit days, QMSR date and MDSAP regulators
Is ISO 13485 Worth It? The Complete 2026 Cost-Benefit Case

September 25, 2026

Is ISO 42001 worth it in 2026 — audit days, first-year cost and Annex A controls at a glance
Is ISO 42001 Worth It? The Complete 2026 Cost-Benefit Case

September 25, 2026

Is SOC 2 worth it in 2026 — typical first-year cost, annual report cycle and attestation status
Is SOC 2 Worth It? The Complete 2026 Cost-Benefit Case

September 24, 2026

ISO 21502 vs PMBOK 8 comparison: the 2020 project management guidance against PMI six principles, five Focus Areas and seven Performance Domains
ISO 21502 vs PMBOK 8: The Complete 2026 Guide for Project Governance

September 24, 2026

ISO 31000 vs ISO 27005 comparison: 2018 risk management guidelines against the 2022 information security risk guidance
ISO 31000 vs ISO 27005: The Definitive 2026 Guide

September 24, 2026

Categories

  • Articles
  • DORA
  • GDPR
  • HIPAA
  • ISO 27001
  • ISO 42001 & AI governance
  • ISO 9001
  • Management systems
  • NIS2
  • Security frameworks
  • SOC 2
Governance DocsGovernance Docs

Reliable ISO & compliance documentation toolkits that help your business meet regulatory standards with ease.

Governance Docs LLC
1209 Mountain Road Pl NE, Suite R
Albuquerque, NM 87110, USA
info@governancedocs.com
+1 812 227 5662

Toolkits

  • ISO 27001:2022
  • GDPR
  • SOC 2
  • PCI-DSS v4.0
  • HIPAA
  • ISO 42001
  • All toolkits →

Company

  • About Us
  • Blog
  • Contact
  • FAQ
  • Which toolkit do I need?
  • Free templates
  • SoA generator
  • Gap assessments
  • Business impact analysis
  • RSS feeds

Policies

  • Privacy Policy
  • Terms & Conditions
  • Refund & Return Policy
  • Delivery Policy
  • Manage cookies
Browse by topicISO 27001ISO 42001 & AI governanceGDPRSOC 2HIPAANIS2DORAISO 9001Management systemsSecurity frameworks
© 2026 Governance Docs LLC. All rights reserved.
Secure checkoutstripeVISA