ISO 27701:2025 Released

October 16, 2025

For the first time since it was initially published in 2019, ISO 27701 has been updated. The International Organization for…

ISO 42001: The Global Standard for AI Governance

September 15, 2025

Artificial Intelligence is transforming every industry—but it’s also creating new risks, regulatory scrutiny, and trust concerns. Organizations adopting AI must…

5 Ways to Save Time in Your InfoSec Audits

September 10, 2025

Audits, whether PCI DSS, SOC 2, ISO 27001, HITRUST, or any information security standard, can feel overwhelming, especially for teams…

A Comprehensive Guide to PCI DSS SAQ Types

August 7, 2025

PCI DSS Self-Assessment Questionnaires (SAQs) are tools that help merchants and service providers assess their compliance with the Payment Card…

What is a SOC 2 Bridge Letter?

July 21, 2025

A SOC 2 bridge letter, also known as a gap letter, is a document organizations provide to customers to assure them they are…

A QSA’s Perspective on Integrating AI into PCI Assessments Guidance

March 26, 2025

The PCI Security Standards Council (PCI SSC) released new guidance on integrating Artificial Intelligence (AI) into PCI assessments. This is…

Leveraging Your ISO 27001 to Jumpstart ISO 42001

March 17, 2025

The world is increasingly reliant on Artificial Intelligence (AI), driving the need for frameworks that address its unique risks and…

SOC 2 Audit 101

March 14, 2025

A SOC 2 audit is designed to show your customers that you have implemented security controls that will result in…

Streamline Security and Compliance Assessments with AI for GRC

February 21, 2025

The adoption of Artificial Intelligence (AI) is growing rapidly across industries, promising tremendous benefits in efficiency, scalability, and accuracy. While…

Avenues for HITRUST and SOC 2 Compliance

January 13, 2025

If you have a HITRUST Assessment you may be wondering how much more effort would be required to also obtain…

Finding a credible expert with the appropriate background, expertise, and credentials can be difficult. CompliancePoint is here to help.