
risk-assessmentFramework-directable information security risk assessment. Identifies threats, evaluates likelihood/impact via a 3x3 matrix, maps findings to any compliance framework, and recommends risk treatment options with prioritization guidance.
framework-mappingMap document sections to compliance framework controls with confidence scoring. Produces bidirectional mappings for gap analysis.