Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » PCI DSS » Subcontractor

Subcontractor

A subcontractor is a third-party entity that a primary contractor hires to carry out particular cybersecurity-related services or tasks on the contractor’s behalf. Services like penetration testing, vulnerability assessments, and incident response may fall under this category.

Additional reading

How to Conduct a Data Protection Impact Assessment (DPIA)?

Key Points Introduction Data Protection Impact Assessment (DPIA) is a part of the EU’s General Data Protection Regulation (GDPR).  For the uninitiated, GDPR is the EU’s new law formed to unify all data protection laws across the European Union.  According to the GDPR Certification, performing DPIA is now mandatory for any cloud-hosted company that launches…

Relevance of IT Governance Principles In Today’s Day and Age.  

On July 19, 2024, a critical incident in IT governance unfolded when CrowdStrike, a leading cybersecurity firm, released a faulty update for its Falcon Sensor software. This update triggered widespread system crashes and the infamous “Blue Screen of Death” on Windows machines across the globe.  The impact had far-reaching consequences. It disrupted tech giants, air…

Top 10 Tugboat Logic Alternatives in 2026

TL; DR Tugboat Logic is now part of OneTrust, so the default path often looks like a broader GRC suite with heavier setup, which may not meet every team’s needs. If you are a cloud-native team trying to stay audit-ready without constant screenshots, manual evidence uploads, or slow handoffs, it may make sense to switch…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.