SOC 2
SOC 2 Type II
Trust Services Criteria covering security, availability, processing integrity, confidentiality, and privacy.
Frameworks
Veritra maintains unified control mappings across the frameworks your customers, regulators, and board care about — so a single piece of evidence satisfies many tests at once.
SOC 2 Type II
Trust Services Criteria covering security, availability, processing integrity, confidentiality, and privacy.
ISO/IEC 27001
International standard for information security management systems with Annex A controls.
HIPAA Security Rule
Administrative, physical, and technical safeguards for protected health information.
GDPR Readiness
European data protection regulation — lawful basis, DSARs, processor agreements, and breach notification.
PCI DSS
Payment Card Industry Data Security Standard for organizations handling cardholder data.
NIST Cybersecurity Framework
Identify, Protect, Detect, Respond, Recover, Govern — the function-based model.
DPDP Act 2023
India's Digital Personal Data Protection Act — notice, consent, breach reporting, and data principal rights.
RBI / NBFC IT Framework
Reserve Bank of India IT framework for banks and NBFCs — system audit, BCP, and cyber resilience.
Every workspace opens with a mapped starter control set for these frameworks. Add your own controls, import a full control set, or define a custom internal framework — cross-framework mapping reuses the evidence you have already collected instead of asking for it twice.
Unified Mapping
Implementing access revocation once gives you credit against SOC 2 CC6.1, ISO 27001 A.9.2.6, HIPAA §164.308(a)(3), and GDPR Art. 32 — simultaneously.