Glossary of Compliance

Compliance Glossary

Our list of curated compliance glossary offers everything you to know about compliance in one place.

Glossary » ISO 27001 » Surveillance Visit

Surveillance Visit

The primary purpose of the surveillance visits is for the certification body to assert whether your management system really works in everyday operations or not. It will focus on prospects that the certification audit wasn’t able to check: for instance, whether all the incidents are recorded, whether all corrective and preventive actions are properly recorded and implemented, whether all the measurements are made, whether the top management really supports and cares about the system, etc.

Additional reading

ISO 27001 Incident Management: Implementation Guide

The rapid increase in cyberattacks and security breaches constantly raises the bar for an acceptable information security posture globally. As an organization dealing with sensitive data,  you always aim to prevent a breach and protect organizational assets from misuse. But, eventually, bad actors find a way to access your weak spots before you are able…

ISO 27001 Risk Assessment & Management

TL;DR The ISO 27001 risk assessment process helps organizations identify various types and levels of risks relevant to a business and score them based on severity and likelihood of occurrence.  Under ISO 27001, risk management guidelines entail implementing preventive controls, establishing an incident response plan, enabling response reporting, and continuously monitoring control effectiveness. The risk…

What Is StateRAMP Compliance? A Complete Overview

Like all organizations, government agencies use cloud solutions. StateRamp provides a ‘verify once, serve many’ model for these agencies to trust their third-party service providers.  In this article, we’ll learn all about StateRAMP, including who requires it, who its members are, the compliance process, its security statuses, and its benefits and challenges.   TL;DR Compliance with…

Sprinto: Your growth superpower

Use Sprinto to centralize security compliance management – so nothing
gets in the way of your moving up and winning big.