๐Ÿ›ก๏ธ Flagship Product

NIST CSF 2.0 Governance Engine

The most comprehensive NIST CSF 2.0 documentation toolkit available. Anchored on the official MS-ISAC 2024 Policy Template Guide. Cross-mapped to ISO 27001:2022 and CIS Controls v8. AI security extensions included. Deploy a complete governance programme in days, not months.

NIST CSF 2.0 ISO 27001:2022 CIS Controls v8 MS-ISAC 2024
Up to 131
Documents
6
CSF Functions
49
Subcategories
5
IR Playbooks
3
Framework Maps

Organised folders. Zero guesswork.

Every document traces back to a specific NIST CSF 2.0 subcategory. Every cross-reference is built in. Open, customise, deploy.

Govern (GV)

17

Governance policies, cybersecurity strategy, roles & responsibilities, risk management strategy, supply chain risk management, oversight reporting.

Identify (ID)

14

Asset management, risk assessment, business environment analysis, improvement planning, vulnerability management.

Protect (PR)

28

Access control, awareness & training, data security, platform security, information protection processes, technology infrastructure resilience.

Detect (DE)

10

Continuous monitoring, adverse event analysis, detection processes, security event logging and alerting.

Respond (RS)

13โ€“18

Incident management, response procedures, reporting & communication, mitigation. Standard adds 5 scenario-specific playbooks.

Recover (RC)

10

Recovery planning, recovery execution procedures, communication coordination, business continuity restoration.

AI Security Extension

8

AI acceptable use, risk assessment, security controls, incident response โ€” mapped to NIST AI RMF 1.0 and OWASP Top 10 for LLMs 2025.

Cross-Cutting Tools

16

Master cross-reference workbook, compliance mapping, security metrics & KPI dashboards, audit readiness checklists, exception management.

Getting Started & Strategy

3โ€“10

README, quick-start guide. Standard adds RACI matrix, board presentation, customisation guide, governance meeting template, implementation tools.

Five incident response playbooks.

Step-by-step runbooks for the most critical threat scenarios. Each playbook includes detection triggers, containment procedures, communication templates, and recovery checklists.

Ransomware

Containment, negotiation framework, recovery sequencing, evidence preservation.

Data Breach

Notification workflow, regulatory response, evidence preservation, stakeholder comms.

Insider Threat

Detection indicators, investigation process, HR coordination, legal chain.

Business Email Compromise

Financial fraud response, account recovery, payment reversal procedures.

Cloud Compromise

Cloud containment, identity reset, configuration audit, service restoration.

Standard tier also includes: RACI Responsibility Matrix, Board Presentation Template, Customisation & Implementation Guide, and Governance Meeting Template.

Essentials documents. Standard executes.

Both tiers include full NIST CSF 2.0 coverage. Standard adds operational governance tools and incident playbooks.

FeatureEssentialsStandard โ˜…
Total documents111131
Policies (18)โœ“โœ“
Standards (12)โœ“โœ“
Processes (10)โœ“โœ“
Procedures (18)โœ“โœ“
Forms & Templates (20)โœ“โœ“
AI Security Extension (8)โœ“โœ“
Cross-Cutting Tools (16)โœ“โœ“
Master Cross-Reference Workbookโœ“โœ“
RACI Responsibility Matrixโ€”โœ“
Board Presentation Templateโ€”โœ“
5 Incident Response Playbooksโ€”โœ“
Customisation & Implementation Guideโ€”โœ“
Governance Meeting Templateโ€”โœ“
$197$497
Get the Essentials โ€” $197 Get the Standard โ€” $497 โ˜…

Instant download ยท Editable DOCX & XLSX ยท 14-day money-back guarantee

Every document is audit-ready from the start.

Not blank templates โ€” comprehensive, implementation-ready content with full framework traceability.

โ—†

NIST CSF 2.0 Traceability

Every document maps to specific subcategories. Auditors and assessors see exact coverage at a glance.

โ—†

Triple Cross-Mapping

ISO 27001:2022 Annex A and CIS Controls v8 cross-referenced throughout. One framework, three compliance pathways.

โ—†

Customise & Deploy

Editable .docx and .xlsx with [Organisation Name] placeholders. Add your logo, adjust scope, publish.

โ—†

MS-ISAC 2024 Anchored

Built on the official CIS / MS-ISAC Policy Template Guide โ€” the authoritative public-domain mapping of CSF subcategories.

โ—†

Roles & Responsibilities

Every document includes dedicated ownership, accountability, and review obligations.

โ—†

AI Security Integrated

Eight documents covering AI governance, risk, and incident response โ€” mapped to NIST AI RMF 1.0 and OWASP Top 10 for LLMs 2025.

What this replaces.

A cybersecurity consultant charges $250โ€“$400 per hour. Writing a single policy takes 2โ€“4 hours. You have up to 131 documents to produce.

Build It Yourself
$55Kโ€“$65K+
131 docs ร— 2 hrs ร— $250/hr
VS
Governance Engine
$197โ€“$497
Instant download ยท Editable ยท Audit-ready

Common questions.

What format are the documents in?

All documents are Microsoft Word (.docx) and Excel (.xlsx). Fully editable โ€” no PDFs or locked files. Organised in a clear folder structure you can unzip and start customising immediately.

Are these templates or complete documents?

Both. Each document is fully written with real, implementation-ready content โ€” not just headers and placeholders. They're comprehensive enough to use almost as-is, but designed for you to customise for your organisation's context.

What makes this different from free templates?

Three things: (1) Every document is traceable to a specific NIST CSF 2.0 subcategory. (2) Every document includes ISO 27001 and CIS Controls cross-references. (3) They're all part of a coherent, interconnected system โ€” not scattered, disconnected files. Plus you get AI security extensions no free template covers.

What's the difference between Essentials and Standard?

Essentials (111 documents, $197) gives you complete policy, standard, process, procedure, and form coverage. Standard (131 documents, $497) adds 20 operational governance tools: RACI matrix, board presentation, five incident response playbooks, customisation guide, and governance meeting template. Essentials documents your governance. Standard helps you execute it.

What frameworks are these aligned to?

NIST CSF 2.0 (49 high-priority subcategories), MS-ISAC 2024 Policy Template Guide (credibility anchor), ISO 27001:2022 (Annex A cross-references), CIS Controls v8 (safeguard mappings), NIST AI RMF 1.0, and OWASP Top 10 for LLM Applications 2025.

Is this legal advice?

No. These are customisable template documents. Organisations should seek qualified professional advice for their specific circumstances and jurisdiction.

What's the refund policy?

14-day money-back guarantee. If the documentation doesn't meet your expectations, we'll refund your purchase.

Deploy governance. Not another blank page.

Framework-aligned. Cross-mapped. Implementation-ready. Choose your tier and start building your governance programme today.

Essentials โ€” $197 Standard โ€” $497 โ˜…

Instant download ยท Editable DOCX & XLSX ยท 14-day money-back guarantee