Framework Store

Compliance Frameworks

22+ production-ready GRC frameworks with codified consulting expertise. Add frameworks to your existing GRATEIC subscription.

22+
Frameworks
362+
Processes
1,500+
Controls
631+
Cross-Mappings

Simple Add-On Pricing

All frameworks are available as add-ons to your existing GRATEIC Customer or Firm Portal subscription. Pricing varies by framework complexity and included content.

Add-On Pricing From
$1,000
per framework / year
Premium Frameworks
$3,000
per framework / year

Requires active Customer Portal or Firm Portal subscription. View portal pricing →

Complete Implementation Guidance

These frameworks include comprehensive control-level implementation guidance, evidence requirements, and testing procedures.

Security Frameworks

NIST Cybersecurity Framework 2.0

NIST-CSF
Premium
📋 26 Processes 🏷 Cybersecurity

Complete CSF 2.0 with all functions, categories, and subcategories mapped to implementation tasks.

Cross-mapped to ISO 27001
Add-On Price $3,000/yr

NIST Risk Management Framework

NIST-RMF
Standard
📋 10 Processes 🏷 Federal Systems

7-step RMF process with authorization documentation and continuous monitoring guidance.

Federal compliance ready
Add-On Price $1,000/yr

ISO/IEC 27005:2022

ISO-27005
Standard
📋 11 Processes 🏷 Security Risk Mgmt

Information security risk assessment and treatment methodology aligned with ISO 27001.

ISO 27001 companion
Add-On Price $1,000/yr

Risk & Resilience Frameworks

COSO Enterprise Risk Management

COSO-ERM
Premium
📋 24 Processes 🏷 Enterprise Risk

Complete 2017 framework with all 5 components and 20 principles for enterprise-wide risk management.

Board-level reporting templates
Add-On Price $2,500/yr

ISO 31000:2018 Risk Management

ISO-31000
Standard
📋 11 Processes 🏷 Risk Management

Universal risk management principles and guidelines applicable to any organization or sector.

Foundation framework
Add-On Price $1,000/yr

Operational Excellence Frameworks

ISO 9001:2015 Quality Management

ISO-9001
Popular
📋 19 Processes 🏷 Quality Management

Complete QMS implementation with process approach, risk-based thinking, and continuous improvement.

Certification-ready
Add-On Price $2,000/yr

ISO/IEC 42001:2023 AI Management

ISO-42001
Emerging
📋 10 Processes 🏷 AI Governance

First international AI management system standard for responsible AI development and deployment.

New for 2024
Add-On Price $1,000/yr

Data Protection Frameworks

HIPAA Compliance Framework

HIPAA
Healthcare
📋 20 Processes 🏷 Healthcare

Privacy Rule, Security Rule, and Breach Notification requirements with safeguard implementation.

US Healthcare required
Add-On Price $2,000/yr

GDPR Compliance

GDPR
Privacy
📋 13 Processes 🏷 EU Privacy

Data protection principles, rights management, and DPO requirements for EU compliance.

EU data processing
Add-On Price $1,000/yr

PIPEDA Compliance

PIPEDA
Privacy
📋 12 Processes 🏷 Canadian Privacy

Canadian privacy law compliance with 10 fair information principles and breach notification.

Canadian operations
Add-On Price $1,000/yr

OSFI Regulatory Frameworks

OSFI Corporate Risk Review

OSFI-CRR
Regulatory
📋 20 Processes 🏷 Risk Governance

Enterprise risk management framework for federally regulated financial institutions.

FRFI required
Add-On Price $2,000/yr

OSFI B-10 Third-Party Risk

OSFI-B10
Regulatory
📋 13 Processes 🏷 Third-Party Risk

Third-party risk management including outsourcing, cloud, and vendor due diligence.

Vendor management
Add-On Price $1,000/yr

OSFI B-13 Technology & Cyber

OSFI-B13
Regulatory
📋 16 Processes 🏷 Technology Risk

Technology and cyber risk management requirements effective January 2024.

New guideline
Add-On Price $1,500/yr

OSFI E-21 Operational Risk

OSFI-E21
Regulatory
📋 18 Processes 🏷 Operational Risk

Operational risk management and resilience requirements for financial institutions.

Basel aligned
Add-On Price $1,500/yr

US Regulatory Frameworks

FFIEC IT Examination Handbook

FFIEC
Regulatory
📋 16 Processes 🏷 US Financial

Federal Financial Institutions Examination Council IT examination guidance and self-assessment.

US banks & credit unions
Add-On Price $1,500/yr

What's Included in Every Framework

Complete Process Library

Purpose, prerequisites, deliverables, and estimated hours for each process

Step-by-Step Tasks

Detailed activities with expected outcomes and completion criteria

How-To Guidance

Practical instructions from 30+ years of consulting best practices

AI Compliance Assistant

Context-aware guidance and document generation at every task

Cross-Framework Mapping

631+ control correlations to eliminate duplicate compliance work

Instant Deployment

Available immediately with Gantt charts and document repository

Coming Soon

Additional frameworks in development based on customer demand:

PCI-DSS 4.0 CCPA/CPRA CMMC 2.0 DORA NIS2

Custom frameworks available on request. Contact sales for enterprise requirements.

Ready to add a framework to your GRC program?

Contact our sales team to discuss your compliance needs and get started with your first framework.