Frameworks & Regulations
Do we cover you? Check in ten seconds.
Filter by region. Global standards show under every region. The badge says whether the framework is in the product today, arrives through a content pack, or is coming with a market launch.
- In product
- Seen in the application's risk catalogue, control mappings or registers.
- Content pack
- Documented for industry packs. Confirm before relying on it.
- Coming
- Planned, with its quarter. Not in the product yet.
Framework coverage by region
12 frameworks
APRA CPS 234
AustraliaIn product
APRA CPS 230
AustraliaIn product
Privacy Act 1988 and NDB scheme
AustraliaIn product
SOCI Act 2018
AustraliaIn product
ISO/IEC 27001
GlobalIn product
NIST CSF
GlobalIn product
PCI-DSS
GlobalIn product
Basel II event types
GlobalContent pack
SOC 2
GlobalContent pack
GDPR
GlobalContent pack
DORA
GlobalContent pack
HIPAA
GlobalContent pack
Four frameworks were loaded in the application we reviewed, with 115 applicable controls and the applicability review complete. The repository's name column does not yet render, so the four are not named here.
Regulators in Australia
APRA
Australian Prudential Regulation Authority
Banks and other ADIs, insurers, superannuation funds
ASIC
Australian Securities and Investments Commission
Financial services and credit licensees, markets
OAIC
Office of the Australian Information Commissioner
Privacy Act 1988 and the Notifiable Data Breaches scheme
CISC
Cyber and Infrastructure Security Centre
Security of Critical Infrastructure Act 2018
ASD's ACSC
Australian Signals Directorate's Australian Cyber Security Centre
Cyber security guidance, including the Essential Eight
Don't see yours?
Tell us the regulator or standard and we will confirm whether it is covered, in a pack, or neither.
Scoped to the regulators you actually answer to.
The demo opens on your jurisdiction, with the risk universe pruned to what applies to you.