Regulations
NIS2, DORA, ISO 27001, GDPR, AI Act, TISAX, Part-IS: compliance by framework
Understand what each regulation or standard requires of your supply chain and information security, and how to run it from a single platform with evidence tied to vendors, risks and controls.
European cybersecurity, data protection and aviation information-security regulations converge on one principle: an organisation stays accountable for the risk it outsources. Each page below covers the regulation's scope, its third-party requirements, the applicable deadlines and how CISAPP structures the underlying evidence.
AI Act
Prepare your EU AI Act compliance: AI system register, FRIA and article-level mapping, connected to your risk management.
Read moreDORA
Manage your critical third-party ICT provider (CTPP) register, TLPT testing, and ICT incidents in an audit-ready DORA framework.
Read moreGDPR
Maintain your records of processing activities and DPIAs, and manage data breaches with a severity wizard and a 72-hour notification tracker.
Read moreISO 27001
Manage your Statement of Applicability (SoA), Annex A controls and ISO 27001 audit evidence in a single platform.
Read moreNIS2
Manage your NIS2 obligations (Article 21 measures, significant incidents, supply chain) and prepare regulator-ready exports from one platform.
Read morePart-IS
EASA Part-IS compliance (Regulations (EU) 2023/203 and 2022/1645): aviation ISMS, PSOE levels, Present & Suitable self-assessment, evidence and audit questionnaire.
Read moreTISAX
Understand TISAX assessment levels (AL1 to AL3), the VDA ISA catalogue, label validity, and what an automotive supplier must prove to its customers.
Read more
FAQ
Yes, and that is the common case. A European bank typically falls under DORA and GDPR, with ISO 27001 required contractually; an aviation organisation may need both Part-IS and NIS2. CISAPP reuses evidence across frameworks so the same information is collected once.
Ready to take control of your third-party risk?
I'm a company
We'll get back to you within 24 hours