DecisionGuard Compliance Coverage Matrix
DecisionGuard maps 24 governance outcome codes (GOV-01 through GOV-24) to the major AI and cybersecurity regulatory frameworks: DORA, the EU AI Act, GDPR, NIS2, SOC 2, and the NIST AI RMF. Every governed action produces cryptographically signed compliance evidence as a side effect — no separate audit prep required.
The compliance matrix shows which regulatory controls each governance outcome satisfies, the evidence type generated, and how to export audit packages for assessors. Coverage includes risk assessment prior to execution, change evaluation against declared scope, human approval for elevated risk, segregation of duties, and tamper-evident audit logging.
Beyond point-in-time evidence, DecisionGuard runs continuous ISO 27001 operations: an Internal Audit tracker against your Statement of Applicability, auto-opened Corrective and Preventive Actions (CAPA) with due dates and reopen tracking, and Management Reviews that freeze a snapshot of program health. A daily Control Health monitor rates all 93 Annex A controls from real governed-review evidence, and a Framework Readiness score crosswalks that evidence to SOC 2, ISO 42001, NIS2, and DORA.