Skip to content
FioSec Consulting

Decision tool

Which framework do you need?

NIST, CIS, ISO, SOC 2, PCI, CIRO, PIPEDA: it’s a lot. Answer six quick questions and we’ll cut through it, the framework to build on, the obligations that apply to you, and the proof your customers may ask for. Nothing is sent anywhere; it’s all worked out right here in your browser.

Framework selector questions

01 · What’s prompting you to look at frameworks?
02 · Which describe your organization?

Select all that apply; more than one can be true.

03 · Do you store, process, or transmit payment-card data?
04 · Are you part of a U.S. government or defense supply chain?
05 · How much security capability do you have in-house?
06 · Do customers need formal proof, such as a certificate or audit report?

Six questions; worked out in your browser, never sent anywhere. This is guidance, not legal advice.