Glossary of Compliance
Compliance Glossary
Our list of curated compliance glossary offers everything you to know about compliance in one place.
Subcontractor
A subcontractor is a third-party entity that a primary contractor hires to carry out particular cybersecurity-related services or tasks on the contractor’s behalf. Services like penetration testing, vulnerability assessments, and incident response may fall under this category.
Additional reading
How to Automate Third-Party Risk Management
Today, every business is a network of networks. With each new connection comes a new surface of risk. Your vendors might host sensitive data, process payments, handle customer transactions, or run a critical API. Any weakness in their system becomes a liability in yours. If they fail, your team must answer to regulators, customers, and…
Key Roles and Responsibilities in Data Governance
Organizations must comply with various regulations and standards governing data usage, such as GDPR, HIPAA, and others. This is why you need to understand the roles and responsibilities in data governance to help ensure compliance. No one puts the definition of data governance more aptly than Mike Ferguson, Intelligent Business Strategies – “Data governance is…
Privacy Impact Assessments: Managing Risks, Building Trust
Privacy. As children, we are taught to respect it by knocking before entering, not reading someone else’s diary, and keeping secrets when trusted. But some time along the way, things get messy. We live in a world where people share more than ever—location check-ins, fitness information, late-night Google searches—so it’s tempting to believe privacy is…

Sprinto: Your growth superpower
Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.



