Skip to content

All use cases

The use cases span three capability areas. Each requirement (FR) has the steps a user follows.

The three areas

At a glance

FRAreaRequirement
FR2FrameworkUpload and map regulatory frameworks to policies to find gaps
FR3FrameworkManage a regulation and its amendments over time
FR4FrameworkVerify whether existing policies cover a newly uploaded regulation
FR5FrameworkCompare new regulations against others to surface overlaps
FR6FrameworkClassify each obligation as mandatory or optional
FR7FrameworkPeriodic (annual) NIST / ISO 27001 gap analysis
FR7-ITSCMFrameworkDedicated ITSCM / continuity gap analysis (not available)
FR11Local H&SFilter/present requirements by geography, jurisdiction, or body
FR14Local H&SConsolidate local regulatory info across geographies into one view
FR15SAFUse SAF controls as structured input (one control = one question)
FR16SAFAccept uploaded evidence documents (PDF, DOCX, XLSX…)
FR18SAFSearch the evidence library per control, keep relevant passages
FR19SAFMap each control to its evidence with document / section / page
FR20SAFFlag controls with no evidence found as gaps
FR21SAFAssign a high / medium / low confidence level to each mapping
FR22SAFExport the evidence mapping in a shareable format