Compliance related

Using Predefined Compliance Frameworks for Review

SecurityReview.AI provides a library of predefined compliance frameworks to streamline and standardize your security reviews.

Where this fits

This is Step 3 in the review creation process, which includes:

  • Review setup – Name the review and optionally provide additional context.
  • Document selection – Choose the documents to be analyzed for this review.
  • Compliance mapping – Select the relevant compliance standards (this step).
  • Review enhancements – Optionally reuse an existing review and define include or exclude objectives.

How to use compliance frameworks ?


In Step 3 of the review creation flow, navigate to the Framework dropdown.

Select one or more compliance standards from the list, including:

  • PCI-DSS
  • OASIS
  • FedRAMP
  • SOC 2

The system will automatically map your selected documents to the relevant controls and objectives within the chosen frameworks. This ensures alignment, consistency, and audit readiness across all your security reviews.

You can further refine mapped controls using include and exclude lists for custom review scope.

X
X