Compliance frameworks

Frameworks

Opticini Compliance maps controls, evidence, and readiness across the frameworks your organization needs β€” from SOC 2 and ISO to HIPAA, NIST, PCI, and CIS.

Supported frameworks

Eight frameworks. One compliance program.

Explore each standard, then run it inside Opticini Compliance β€” controls, evidence, policies, and continuous readiness in one place.

Compliance Management

ISO/IEC 27002

ISO/IEC 27002 provides a comprehensive set of information security controls designed to protect sensitive data, reduce risk, and improve organizational security posture. While ISO 27001 defines the requirements for an…

View framework

Compliance

HIPAA Security Rule

The HIPAA Security Rule establishes national standards for protecting electronic protected health information (ePHI). It requires healthcare organizations and their partners to implement administrative, physical, and …

View framework

Compliance & Audit Readiness

SOC 2

SOC 2 is a widely recognized auditing framework that evaluates how organizations manage customer data based on five trust service principles.

View framework

Security Controls

NIST SP 800-53

NIST Special Publication 800-53 provides one of the most comprehensive catalogs of security and privacy controls available today. It is widely used by federal agencies and organizations working with government systems.

View framework

CSF

NIST Cybersecurity Framework

The NIST Cybersecurity Framework provides a flexible risk-based approach for managing cybersecurity across organizations of all sizes. It is widely used in both public and private sectors.

View framework

Information Security Management

ISO/IEC 27001

ISO/IEC 27001 is the global standard for establishing, implementing, and maintaining an Information Security Management System (ISMS).

View framework

Compliance

PCI DSS

The Payment Card Industry Data Security Standard (PCI DSS) defines security requirements for organizations that store, process, or transmit payment card information.

View framework

Prioritized Cybersecurity Best Practices

CIS Critical Security Controls

The CIS Critical Security Controls provide a prioritized set of cybersecurity best practices designed to protect organizations against the most common cyber attacks.

View framework

Run these frameworks in Compliance

Enable the standards you need, operate controls year-round, and stay audit-ready β€” with AI-assisted readiness when you want it.