What problem does it solve?
This Skill determines where an organization actually stands against a chosen compliance framework and what must be fixed first, without confusing readiness assessment with an audit opinion.
Core Features & Use Cases
- Framework Readiness Review: Assesses current-state evidence against ISO 27001:2022, ISO 42001:2023, SOC 2, or an optional NIST AI RMF profile.
- Evidence-Based Verdicts: Produces MET, PARTIAL, GAP, or UNVERIFIABLE outcomes for each requirement using cited artifacts and refuses to mark missing evidence as complete.
- Prioritized Remediation: Orders blockers first, then control gaps, then evidence gaps, while highlighting shared fixes across frameworks via crosswalked controls.
- Use Case: Use this Skill before a certification or attestation window to identify missing management-system artifacts, incomplete controls, and evidence shortfalls in the correct remediation sequence.
Quick Start
Ask for a compliance gap audit for the chosen framework, target date, and scope, and provide the current-state catalog, crosswalk, SoA, and evidence coverage sources.