How to Import Compliance Frameworks in GRCHub

Created by Anjana vs, Modified on Sun, 23 Feb at 9:15 PM by Anjana vs

GRCHub allows organizations to streamline their compliance efforts by importing widely recognized security and regulatory frameworks. This feature helps businesses stay audit ready. Follow the steps below to seamlessly import compliance frameworks into your system.

1. Navigating to Standards in the Compliance Management Module

To begin the import process:

  1. Log in to GRCHub Admin Portal.
  2. Navigate to the Compliance Management Module from the left-hand menu.
  3. Click on the Standards tab.
  4. This section displays a list of all security frameworks available in the system.

Example

You may find regulatory standards such as ISO 27001, ISO 22301, SOC 2, GDPR, and more, ready for import.

A screenshot of a computer

AI-generated content may be incorrect.

2. Importing a Security Standard

To add a compliance framework:

  1. Click on System Standards Gallery at the top right corner.
  2. A list of widely recognized security frameworks will appear.
  3. Each standard includes:
    • Standard Name (e.g., ISO 27001)
    • Version (e.g., ISO/IEC 27001:2022)
    • Region (e.g., Global, EU, US)
    • List of Controls included in the framework
  1. Select the required standard and click Import to integrate it into your GRCHub system.
  2. Once imported, all related controls, evidence tasks, and compliance requirements will be available for management.

Example

If you import ISO 22301:2019 (Business Continuity Management Systems), all associated business continuity controls will be added to your compliance tracking.

 

3. Standard Details

Once imported, users can access full details of the compliance framework:

  1. Click on the imported standard from the Standards list.
  2. The Standard Details Page includes:
    • Basic Details: Name, version, description
    • Controls: List of all security controls mapped to this framework
    • Certifications: Any related compliance certifications
    • Related Objects: Linked policies, risks, and procedures
    • Attachments: Supporting compliance documents
    • Comments & History: Modification records and discussions

Example

If you open ISO 27001:2022, you will find its controls related to:

  • Information Security Management
  • Access Control
  • Risk Assessments
  • Compliance Monitoring

A screenshot of a computer

AI-generated content may be incorrect.

 

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article