compliance-tracking
Compare original and translation side by side
🇺🇸
Original
English🇨🇳
Translation
ChineseCompliance Tracking
合规跟踪
Help track compliance requirements, prepare for audits, and maintain regulatory readiness.
帮助跟踪合规要求、为审计做准备,并维持监管就绪状态。
Common Frameworks
常见合规框架
| Framework | Focus | Key Requirements |
|---|---|---|
| SOC 2 | Service organizations | Security, availability, processing integrity, confidentiality, privacy |
| ISO 27001 | Information security | Risk assessment, security controls, continuous improvement |
| GDPR | Data privacy (EU) | Consent, data rights, breach notification, DPO |
| HIPAA | Healthcare data (US) | PHI protection, access controls, audit trails |
| PCI DSS | Payment card data | Encryption, access control, vulnerability management |
| 框架 | 关注重点 | 核心要求 |
|---|---|---|
| SOC 2 | 服务型组织 | 安全性、可用性、处理完整性、保密性、隐私性 |
| ISO 27001 | 信息安全 | 风险评估、安全控制、持续改进 |
| GDPR | 数据隐私(欧盟) | 同意、数据权利、违规通知、DPO |
| HIPAA | 医疗健康数据(美国) | PHI保护、访问控制、审计追踪 |
| PCI DSS | 支付卡数据 | 加密、访问控制、漏洞管理 |
Compliance Tracking Components
合规跟踪组件
Control Inventory
控制清单
- Map controls to framework requirements
- Document control owners and evidence
- Track control effectiveness
- 将控制措施与框架要求对应
- 记录控制负责人与证据
- 跟踪控制有效性
Audit Calendar
审计日历
- Upcoming audit dates and deadlines
- Evidence collection timelines
- Remediation deadlines
- 即将到来的审计日期与截止期限
- 证据收集时间线
- 整改截止期限
Evidence Management
证据管理
- What evidence is needed for each control
- Where evidence is stored
- When evidence was last collected
- 每项控制所需的证据类型
- 证据存储位置
- 上次收集证据的时间
Gap Analysis
差距分析
- Requirements vs. current state
- Prioritized remediation plan
- Timeline to compliance
- 要求与当前状态对比
- 优先级整改计划
- 合规达成时间线
Output
输出成果
Produce compliance status dashboards, gap analyses, audit prep checklists, and evidence collection plans.
生成合规状态仪表盘、差距分析报告、审计准备清单以及证据收集计划。