Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » ISO 27001 » Identity Certificate

Identity Certificate

A digital certificate refers to an electronic “password” that allows a person or an organization to share data securely over the web on the public key infrastructure (PKI). Digital Certificate is also called an identity certificate or a public key certificate.

Additional reading

Service Organization Controls (SOC) Reports: Types & Step to follow

In late 2023, the AICPA refreshed its Trust Services Criteria on September 30 and followed up on October 1 with a detailed attestation guide for SOC for Cybersecurity engagements. That summer, the SEC’s July 26 rule began requiring public companies to disclose material cybersecurity incidents within four business days and outline their risk-management governance in…

Types of Security Controls With Examples [How to Implement]

In Dec 2022, OU Health, a hospital in Oklahoma, notified about 3000 patients about a breach of their health data after an employee’s laptop was stolen. Sensitive data like treatments, social security numbers, and insurance details were compromised. The incident highlights the importance of implementing all types of security controls. But what are security controls?…

PCI DSS Self-Assessment Questionnaire (SAQ) Guide

TL,DR: PCI DSS SAQs help eligible merchants and service providers self-check cardholder data controls. Your SAQ type depends on payment channels, storage practices, and cardholder data environment scope. The article explains SAQ types, yes-or-no responses, remediation notes, and annual assessment steps. With trillions of dollars in purchases expected to be made using credit cards alone…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.