Compliance-learning-hero

Security compliance learning center

We've sourced several guides and checklists covering some of the most important topics facing cybersecurity professionals when it comes to regulatory compliance. Find insights to put to practice, identified and compiled by security experts. 

With increasing regulatory scrutiny, compliance with frameworks such as the Digital Operational Resilience Act (DORA), General Data Protection Regulation (GDPR), System and Organization Controls 2 (SOC 2), and the Sarbanes-Oxley Act (SOX) is paramount. These regulations help ensure operational resilience, data privacy, and financial security. By staying informed on compliance requirements alongside emerging cyber threats, security leaders can build a more resilient and proactive defense strategy. Whether securing critical assets, monitoring third-party risks, or implementing a threat intelligence program, these resources provide actionable insights to help organizations stay ahead of cyber adversaries.

Checklist for DORA compliance

Checklist for GDPR compliance

Checklist for SOC 2 compliance

Checklist for SOX compliance

Regulatory reading

Five things every public company CISO should do now

Why Independent Benchmarking Data is a Critical Part of SEC Cybersecurity Disclosure Strategy

SEC’s Cybersecurity Regulations: The Relationship Between the CISO & The Board

Regulatory reading

NIS 2 Directive: Leveraging regulatory compliance and technology to reduce risk

Road to DORA and PS21/3 Compliance: Leveraging Technology to Reduce Risk

CNCS shares valuable insights into the challenges, requirements, and best practices surrounding NIS2 compliance.

How do you determine who is a 'critical supplier'? Delve into practical strategies to identify crucial partners and ensure compliance with NIS2 requirements.

Regulatory reading

Navigating Japan METI’s Upcoming Cybersecurity Rating System: Strategies for Businesses to Enhance Cyber Defense

Navigating APRA’s CPS 234: A Universal Metric

Following METI’s Attack Surface Guidance with Bitsight

Cyber governance inform your decisions

Governments and regulatory bodies are recognizing the importance of cybersecurity in safeguarding critical infrastructure and protecting data. Find resources and recommendations for meeting the SEC’s new disclosure requirements in the US. See how industry leaders like Equifax and Schneider Electric are including Bitsight in their cyber reporting.