Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » ISO 27001 » Restricted

Restricted

An authenticator class, type, or instantiation has added risk of false acceptance associated with its use that is, therefore, subject to added requirements.

Additional reading

Best ERM Software Tools for Enterprise Risk Management

TL;DR ERM software centralizes risk data, automates risk assessments, and gives leadership real-time exposure dashboards instead of scattered spreadsheets. Enterprise-grade platforms like Riskonnect, Diligent, and AuditBoard connect operational risk directly to corporate strategy and regulatory compliance. Tools like Sprinto cover the continuous IT, security, and compliance risk layer that feeds into that bigger picture, not…

SOC 2 Exceptions: What They Mean & How to Handle Them

In Accenture’s 2024 Risk Study, 27% of risk leaders flagged compliance as an urgent concern, and 44% admitted to struggling with risk visibility before audits. One area where these challenges often come to light is during SOC 2 audits, where even minor gaps in risk management and controls can lead to exceptions. These exceptions refer…

Compliance Posture: How to Assess & Improve It

TL,DR: Compliance posture measures the effectiveness of controls against regulatory framework requirements during an observation period, tracking implementation progress, control effectiveness, and performance based on predefined compliance metrics Assessment follows a 3-step process: measure implementation progress (percentage of systems with controls deployed), evaluate control effectiveness (how well controls perform against requirements), and quantify control impact…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.