Skip to main content

Enabling a Compliance Framework

Turn on a new framework from the directory, and what each of its Requirements, Tests, and Controls tabs actually shows you.

Written by Upendra Varma

Prove → Compliance → Frameworks is a directory of every framework ComplyJet supports — SOC 2, HIPAA, GDPR, ISO 27001, ISO 27701, ISO 9001, PCI DSS, and more — with an Enable button on anything you haven't turned on yet.

Enabling takes effect immediately — there's no confirmation step, and it provisions the full set of requirements, tests, and controls for that framework right away. Only enable a framework you actually intend to pursue.

Requirements, Tests, and Controls — what each tab covers

Once enabled, a framework's detail page has three tabs, each looking at your compliance program from a different angle:

Requirements — the framework's own clauses (e.g. ISO 27001's "A.5.1"), each showing the controls you've mapped to satisfy it. This is the framework's actual language, closest to what an auditor reads:

Tests — every automated and manual test linked to this framework, with the same All/Passing/Failing/Excluded filtering used elsewhere in the product:

Controls — your control set as it applies to this specific framework, each with an owner and an evidence count (e.g. "3/10"):

In short: Requirements tells you what the framework demands, Controls tells you what you've put in place to meet it, and Tests tells you the underlying evidence proving those controls actually work.

Did this answer your question?