Employee Privacy Governance for GDPR and ISO/IEC 27701
A practical CISO and HR compliance playbook for governing employee PII under GDPR, ISO/IEC 27701:2025, ISO/IEC 27001:2022, NIS2, DORA, NIST CSF 2.0, and COBIT 2019.
Articles tagged with "Access Control"
A practical CISO and HR compliance playbook for governing employee PII under GDPR, ISO/IEC 27701:2025, ISO/IEC 27001:2022, NIS2, DORA, NIST CSF 2.0, and COBIT 2019.
A practical guide for CISOs and compliance teams to govern secure file transfer, map ISO/IEC 27001:2022 controls to GDPR, NIS2 and DORA, and produce audit-ready evidence.
A practical guide to turning NIST SP 800-207 Zero Trust Architecture into audit-ready evidence for ISO/IEC 27001:2022, NIS2, DORA, GDPR and customer security reviews.
A practical CISO guide to turning NIST SP 800-63-4 password, MFA and passkey expectations into ISO/IEC 27001:2022, NIS2, DORA and GDPR evidence using Clarysec policies, Zenith Blueprint and Zenith Controls.
A practical CISO guide to using data classification and information labelling as the evidence layer for ISO/IEC 27001:2022, GDPR Article 32, NIS2 Article 21 and DORA ICT risk management.
Remote access is no longer a narrow IT topic. In 2026, VPN, MFA, supplier access, endpoint posture, logging and patch evidence must satisfy ISO 27001 auditors, NIS2 management accountability, DORA ICT risk rules and GDPR Article 32 security obligations.
A practical guide for building audit-ready GDPR Article 32 technical and organisational measures using ISO 27001:2022, ISO 27005, NIS2, DORA and Clarysec toolkits.
A practical CISO guide to building one access control evidence model for ISO/IEC 27001:2022, NIS2, DORA, GDPR, NIST and COBIT.
Learn how to build audit-ready PII protection controls by extending ISO/IEC 27001:2022 with ISO/IEC 27701:2025 and ISO/IEC 29151:2022, mapped to GDPR, NIS2, DORA, NIST-style assurance, and COBIT 2019 governance expectations.