Compliance Program Starter
The Pillar 01 operating system plus the two workbooks most first programs actually need — SOC 2 Readiness and the NIST CSF 2.0 Self-Assessment — with both PDF readiness checklists included. 30% off buying separately.
The method, the framework workbook, the baseline assessment, and the checklists to sanity-check yourself before an auditor does.
Pillar 01 — The Compliance Operating System. Map controls once and satisfy many frameworks, driven from a registry rather than a platform's integrations. Four steps from registry to audit-ready, the two gaps the automation platforms leave, and the ISO 42001 / EU AI Act layer.
SOC 2 Readiness Accelerator. 20 tabs from assessment through Type 2 audit — 100+ controls, 35 required policies, 7 pre-populated operational logs, and an executive dashboard with auto-calculated readiness metrics. The framework most first programs are actually chasing.
NIST CSF 2.0 Self-Assessment Workbook. All 106 subcategories with verbatim outcome statements, current/target tiers, an Organizational Profile generator, and crosswalks to SP 800-53r5, SP 800-171r3, CIS Controls v8.1 and ISO 27001:2022 — which is the map-once dividend Pillar 01 argues for, already built.
Both PDF readiness checklists included — the SOC 2 Readiness Checklist (Type I & II) and the HIPAA Compliance Checklist 2026 — the key controls, evidence items and policy gaps auditors check at every engagement.
Read the operating system for the method, run SOC 2 with the accelerator, baseline against NIST CSF, and use the checklists as the pre-fieldwork sanity pass. The managed compliance pillar runs all of it for you if you would rather.
What's in this bundle
Pillar 01 — The Compliance Operating System
Map controls once, satisfy every framework. A continuous, registry-driven compliance program across SOC 2, ISO 27001, HIPAA, PCI, CMMC, DORA and NIS2 — plus the ISO 42001 and EU AI Act layer most guides still omit.
SOC 2 Readiness Accelerator
20-tab SOC 2 program covering assessment through Type 2 audit — 100+ controls, 35 required policies, 7 pre-populated operational logs, and an executive dashboard with three auto-calculated readiness metrics.
NIST CSF 2.0 Self-Assessment Workbook
14-tab NIST CSF 2.0 workbook — all 106 Subcategories with verbatim NIST.CSWP.29 outcome statements, Current/Target tier dropdowns, Organizational Profile Generator, heatmap, gap analysis pre-seeded with 12 high-gap 2026 scenarios, and crosswalks to SP 800-53r5, SP 800-171r3, CIS Controls v8.1, and ISO 27001:2022.
SOC 2 Readiness Checklist (Type I & II)
The key controls, evidence items, and policy gaps auditors check at every SOC 2 engagement — organized by Trust Service Criteria with a pre-audit readiness rating.
HIPAA Compliance Checklist 2026
Updated for the 2026 Security Rule Final Rule — covers all 12 new mandatory requirements plus the core Administrative, Physical, and Technical safeguards in a single actionable checklist.
What's included
- PDF — fully editable
- Excel (.xlsx) — fully editable
- Word (.docx) — User Guide — fully editable
- Instant download after purchase
- Free updates — re-download when we release new versions
- Practitioner License: unlimited client use (vCISO / MSP)
Complete your toolkit
More from the CISO Marketplace ecosystem
Choose your license:
- Secure checkout via Stripe
- All major cards accepted
- 30-day satisfaction guarantee