HomeResources
Resources

Compliance guides, frameworks,
and practical resources.

In-depth guides and practical resources on ISO 27001, GDPR, SOC 2, DORA, and every framework Complify supports — written by our compliance specialists.

All Resources
ISO 27001Guide
ISO 27001:2022 Implementation Guide

A practical, step-by-step guide to implementing ISO 27001:2022 — from scoping and gap analysis through to certification audit.

25 min readRead →
DORAWhitepaper
DORA Compliance for Financial Institutions

Everything EU financial entities need to know about DORA — ICT risk management, incident reporting, resilience testing, and third-party risk.

20 min readRead →
GDPRGuide
GDPR Special Category Data: A Practical Guide

Article 9 health data, processing conditions, DPIAs, and the accountability obligations that come with special category data processing.

18 min readRead →
ISO 27701Guide
ISO 27701:2025 — What Changed and Why It Matters

The 2025 revision made ISO 27701 a standalone standard for the first time. This guide explains what changed, the transition deadline, and the new certification paths.

15 min readRead →
SOC 2Guide
SOC 2 Type I vs Type II: Which Do You Need?

Understanding the difference between Type I and Type II, when each is appropriate, and how to plan your SOC 2 observation period efficiently.

12 min readRead →
ISO 22301Guide
Business Impact Analysis: The BIA Guide

How to conduct a rigorous Business Impact Analysis — identifying critical processes, setting RTO/RPO targets, and building the foundation of your BCMS.

22 min readRead →
ISO 9001Guide
ISO 9001 and ISO 27001: Running Both Standards Together

The Harmonized High-Level Structure means ISO 9001 and ISO 27001 share identical clause numbering. This guide shows how to run an integrated management system efficiently.

16 min readRead →
HealthcareGuide
NHS DTAC and ISO 27001: A Healthtech Compliance Roadmap

How digital health and healthtech companies can use ISO 27001 certification to pass NHS Digital Assessment Criteria and accelerate procurement.

14 min readRead →
Stay Updated

Regulatory updates, straight to your inbox.

New standards, regulatory changes, and compliance guides — delivered monthly to compliance officers, CISOs, and DPOs.

No spam. Unsubscribe anytime.

Get Started

Ready to put this into practice?

See how Complify automates the frameworks you have been reading about — in a tailored demo aligned to your organization.