Cloud Security Stack
Security Verdict

Compliance

Compliance and governance

ISO 27001, Cyber Essentials, NIST and GDPR mapped to the Microsoft controls that actually satisfy them.

11 guides in this section

A control framework and a product feature list are not the same thing, and most compliance content quietly pretends they are. Buying Microsoft Purview does not make you ISO 27001 certified, and no vendor page will tell you which controls it leaves untouched.

These guides map specific controls to specific Microsoft capabilities, then say which ones you will still be evidencing manually on the day of the audit.

Guides in this section

Nothing here yet that answers your question?

Tell us what you are trying to decide and it moves up the queue. The order these get written in is driven by what people ask for.

Ask for a guide