Regulations

NIS2, DORA, ISO 27001, GDPR, AI Act, TISAX, Part-IS: compliance by framework

Understand what each regulation or standard requires of your supply chain and information security, and how to run it from a single platform with evidence tied to vendors, risks and controls.

FAQ

Yes, and that is the common case. A European bank typically falls under DORA and GDPR, with ISO 27001 required contractually; an aviation organisation may need both Part-IS and NIS2. CISAPP reuses evidence across frameworks so the same information is collected once.

Ready to take control of your third-party risk?

I'm a company

We'll get back to you within 24 hours

I'm a vendor

Immediate onboarding

Create a free account