About Us Contact Blog
Governance DocsGovernance Docs
All ToolkitsWhich Toolkit?AboutBlogContactMy AccountCart
FOX v.2.4.9
Browse Toolkits
Governance Docs
  • Browse All Toolkits
  • Information Security & Cybersecurity
  • Data Privacy & Protection
  • Governance, Risk & Compliance
  • Quality Management
  • Health, Safety & Environment
  • AI Governance

My Account

CART

No products in the cart.

Author: Governance Docs

Governance Docs LLC

CCPA compliance in 2026 — the new California privacy obligations

CCPA Compliance in 2026: Every New Deadline Explained

Governance Docs15th August 2026

CCPA compliance changed on 1 January 2026. The risk assessment, ADMT and cybersecurity audit deadlines, read from the…
Read More
ISO 31000 risk management — principles, framework and process

ISO 31000 Risk Management: The 3 Components Explained

Governance Docs15th August 2026

ISO 31000:2018 explained — the three components, why there is no certification, and the third edition now at…
Read More
The CIS Controls v8.1 framework and its three Implementation Groups

CIS Controls v8.1: The 18 Controls and 3 Implementation Groups

Governance Docs15th August 2026

A practical guide to CIS Controls v8.1 — the 18 Controls, the 153 Safeguards, and how the three…
Read More
Cyber Essentials certification — the five technical controls

Cyber Essentials Certification: The Five Controls

Governance Docs15th August 2026

Cyber Essentials certification explained: the five technical controls, why scope decides the outcome, and the four failures that…
Read More
FedRAMP authorization — what FedRAMP 20x changed

FedRAMP Authorization: What FedRAMP 20x Changed

Governance Docs15th August 2026

FedRAMP authorization has changed. 20x is past the pilots and in wide-scale adoption, Key Security Indicators replaced yearly…
Read More
CMMC compliance — the four-phase rollout under 32 CFR Part 170

CMMC Compliance: The Four-Phase Rollout Explained

Governance Docs15th August 2026

CMMC compliance explained: the three levels, the four phases, and why Phase 2 on 10 November 2026 is…
Read More
CRA product classification — Annex III and Annex IV

CRA Product Classification: Default, Class I, Class II, Critical

Governance Docs15th August 2026

Classification decides whether you need a notified body. Article 7(1) contains the two rules that settle most cases,…
Read More
CRA conformity assessment — notified body routes

CRA Conformity Assessment: Do You Need a Notified Body?

Governance Docs15th August 2026

No harmonised standard has been cited under the CRA, so Article 32(2) currently sends every Annex III product…
Read More
CRA reporting deadline — 11 September 2026

The CRA Reporting Deadline: 11 September 2026

Governance Docs15th August 2026

Article 14 applies from 11 September 2026, and Article 69(3) reaches products you placed on the market years…
Read More
EU Cyber Resilience Act — Regulation (EU) 2024/2847 guide

EU CRA: The Cyber Resilience Act Explained

Governance Docs15th August 2026

What Regulation (EU) 2024/2847 requires, the four dates that matter, and the provisions manufacturers reliably get wrong.
Read More
VDA ISA2027 for TISAX assessments

VDA ISA2027: What Changed and What It Means for Your TISAX Assessment

Governance Docs14th August 2026

VDA ISA2027 replaces ISA 6 for every TISAX assessment ordered from 1 January 2027. What changed in the…
Read More
ISO 42001 vs EU AI Act — guide from Governance Docs

ISO 42001 vs the EU AI Act: Standard, Regulation, and How They Fit

Governance Docs13th August 2026

ISO 42001 vs the EU AI Act: one is a voluntary certifiable standard, the other binding law. What…
Read More
    ←
  • 1
  • …
  • 4
  • 5
  • 6
  • 7
  • 8
  • …
  • 20
  • →

Recent Posts

How to weight the clauses in an ISO 22301 gap analysis
ISO 22301 Gap Analysis: 6 Proven Rules for a Plan That Lands

August 16, 2026

What each ISO 27001 certification audit stage tests in a readiness assessment
ISO 27001 Readiness Assessment: 6 Proven Checks

August 16, 2026

What the ePrivacy Directive and the GDPR each require for cookie consent
Cookie Consent: 6 Proven Rules Article 5(3) Sets

August 16, 2026

What replaced the FedRAMP authorization boundary in the Consolidated Rules for 2026
Authorization Boundary: 6 Proven Steps for FedRAMP 2026

August 16, 2026

What the Framework Directive and ISO 45003 each establish about psychosocial risk
Psychosocial Risk: 6 Proven Steps for ISO 45001

August 16, 2026

Categories

  • Articles
  • DORA
  • GDPR
  • HIPAA
  • ISO 27001
  • ISO 42001 & AI governance
  • ISO 9001
  • Management systems
  • NIS2
  • Security frameworks
  • SOC 2
Governance DocsGovernance Docs

Reliable ISO & compliance documentation toolkits that help your business meet regulatory standards with ease.

Governance Docs LLC
1209 Mountain Road Pl NE, Suite R
Albuquerque, NM 87110, USA
info@governancedocs.com
+1 812 227 5662

Toolkits

  • ISO 27001:2022
  • GDPR
  • SOC 2
  • PCI-DSS v4.0
  • HIPAA
  • ISO 42001
  • All toolkits →

Company

  • About Us
  • Blog
  • Contact
  • FAQ
  • Which toolkit do I need?
  • Free templates

Policies

  • Privacy Policy
  • Terms & Conditions
  • Refund & Return Policy
  • Delivery Policy
Browse by topicISO 27001ISO 42001 & AI governanceGDPRSOC 2HIPAANIS2DORAISO 9001Management systemsSecurity frameworks
© 2026 Governance Docs LLC. All rights reserved.
Secure checkoutstripeVISA