
ISO/IEC 27001
The international standard for information security management systems. Defines how an organisation establishes, operates and continually improves its ISMS.
Covered by ENLISEC, VASSURE, CONFICIENT
Official sourceAlignment
We map to recognised standards instead of inventing our own scoring, so results travel to auditors, regulators and customers without translation.

The international standard for information security management systems. Defines how an organisation establishes, operates and continually improves its ISMS.
Covered by ENLISEC, VASSURE, CONFICIENT
Official source
The management system standard for artificial intelligence. Governs how AI systems are developed, deployed and overseen responsibly.
Covered by CONFICIENT
Official source
Organises cybersecurity outcomes into govern, identify, protect, detect, respond and recover. Widely used to describe security posture to boards and regulators.
Covered by ENLISEC, VASSURE, CONFICIENT
Official source
EU regulation requiring financial entities to withstand ICT-related disruption, with specific obligations for third-party risk management.
Covered by VASSURE, CONFICIENT
Official source
Nigeria's data protection law, governing lawful processing, data subject rights and the obligations of data controllers and processors.
Covered by ENLISEC, CONFICIENT
Official source
The EU regulation governing personal data processing, with extraterritorial reach over any organisation handling EU residents' data.
Covered by ENLISEC, VASSURE, CONFICIENT
Official source
UK government-backed certification covering the technical controls that prevent the most common internet-borne attacks.
Covered by ENLISEC, CONFICIENT
Official source
The baseline for mobile application security, defining verification requirements for mobile app architecture, storage, cryptography and platform interaction.
Covered by CONFICIENT
Official source
The Cloud Security Alliance questionnaire cloud providers complete to document their security controls for customer due diligence.
Covered by VASSURE, CONFICIENT
Official sourceExsol Solfield products align with ISO 27001, ISO 42001, NIST CSF, DORA, NDPA, GDPR, Cyber Essentials, OWASP MASVS and CSA CAIQ, among others.
CONFICIENT in particular centralises control libraries mapped across these frameworks, so a single control can satisfy obligations under several of them at once.
CONFICIENT maintains continuous audit readiness by centralising control libraries, automating attestation workflows and keeping evidence review current, so gap analysis is accelerated and an audit becomes a report you run rather than a project you staff.
ENLISEC contributes the human-risk side of the same picture, evidencing workforce security training and phishing readiness for auditors and customers running due diligence.