Skip to main content

For auditors and compliance officers

Alwaysaudit-ready.

Stop scrambling for evidence. CISGuard generates compliance reports, tracks exceptions and keeps a tamper-evident audit trail continuously, not just before an audit.

  • ContinuousEvery scan updates posture. Evidence is never a one-off snapshot.
  • 3 frameworksNIST 800-53, ISO 27001 and SOC 2 mapped from one scan.
  • 4 report typesExecutive, detailed, gap analysis and framework coverage.
  • Tamper-evidentAn audit trail of every login, scan, approval and export.

Evidence generation

Four report types, audit-grade quality.

  • Executive summary report

    One-page compliance overview: overall score, benchmark breakdown, critical findings and trend direction. Suitable for board packs and regulatory submissions.

    • Overall compliance percentage with severity colouring
    • Per-benchmark pass, fail and total breakdown
    • Top critical failures with remediation status
    • Trend comparison against the previous period
  • Detailed compliance report

    Control-by-control evidence. Every control listed with its status, current value, expected value and remediation guidance, filterable by benchmark.

    • Full control listing with audit evidence
    • Current versus recommended configuration values
    • Severity classification: critical, high, medium, low
    • Filterable by benchmark, status and severity
  • Gap analysis report

    Every failing control with prioritised remediation steps, so the team knows what to fix first and how.

    • Failing controls sorted by severity
    • Step-by-step remediation instructions
    • OS-aware fix commands for Windows and Linux
    • CSV export for ticketing
  • Framework coverage report

    Maps CIS Benchmark results to NIST 800-53, ISO 27001 and SOC 2, showing which framework controls are satisfied, partially met or not addressed.

    • Per-framework control mapping with satisfaction status
    • Coverage percentage per control family
    • Drill-down from each framework requirement to the CIS controls behind it
    • JSON, CSV and SARIF exports

Exception management

Formal risk acceptance workflow.

Not every control can be remediated immediately. CISGuard provides a structured exception process that auditors trust.

  1. 01Exception request

    The compliance team documents the business justification and compensating controls for any accepted risk.

  2. 02Approval

    A designated approver reviews the justification, then approves or revokes. Who approved, and when, is recorded.

  3. 03Auto-expiry

    Exceptions expire on a set date and the compliance score recalculates. No permanent waivers without renewal.

  4. 04Audit trail

    Creation, approval, revocation and expiry are all logged with user, IP address and timestamp.

Audit trail

A tamper-evident record of everything.

Every action in CISGuard is logged: user logins, scan executions, exception approvals, setting changes, report generation and data exports. Each record carries the user identity, IP address, timestamp and action details, and the log is tamper-evident.

  • SIEM forwarding

    Syslog, CEF, JSON over HTTPS, Azure Log Analytics and Grafana Loki, so the trail lands in your monitoring too.

  • Role-based access

    Administrator, compliance manager and auditor roles. Auditors read reports and evidence without being able to change anything.

  • CSV export

    Export audit logs for offline analysis, regulatory submissions or your GRC platform.

Frequently asked

Auditor questions, answered directly.

What compliance reports does CISGuard generate for auditors?

CISGuard generates four report types: an executive summary with the overall compliance score and trend direction, a detailed compliance report with control-by-control evidence and current versus expected values, a gap analysis report with failing controls and OS-aware remediation steps, and a framework coverage report mapping CIS results to NIST 800-53, ISO 27001 and SOC 2 with satisfaction status.

How does CISGuard handle exception management during audits?

CISGuard provides a formal exception workflow in four steps: an exception request with business justification and compensating controls, approval by a designated approver, automatic expiry on a set date with the compliance score recalculated, and a tamper-evident audit trail in which every action is logged with user, IP address and timestamp.

Does CISGuard provide continuous audit evidence or only point-in-time reports?

CISGuard provides continuous audit evidence. Every scan updates the compliance posture, with drift detection between scans and historical trend data retained per benchmark. This satisfies SOC 2 Type II and other frameworks that require evidence of controls operating over a sustained period rather than at a single point in time.

Can auditors access the CISGuard dashboard directly?

Yes. CISGuard supports role-based access with a dedicated auditor role. Auditors can view compliance dashboards, download reports, review the exception register and examine the audit trail without being able to modify configuration. Access is controlled through SSO (Microsoft Entra ID, SAML 2.0) or LDAP and Active Directory, with optional multi-factor authentication.

What frameworks can auditors verify through CISGuard reports?

CISGuard maps CIS Benchmark results to three frameworks from a single scan: NIST SP 800-53 Rev. 5 (50 controls across 13 families), ISO/IEC 27001:2022 (36 Annex A controls) and SOC 2 (25 Trust Services Criteria). The underlying evidence comes from 22 CIS Benchmarks and 3,933 controls. Each framework report shows per-control satisfaction status with drill-down to the CIS controls behind it.

Schedule an auditor walkthrough.

See the reports, the exception workflow and the audit trail in action. We will walk through a real compliance scenario with your team.