Solutions
Technical control coverage, honestly reported
A scan does not prove compliance. Guardian reports technical control coverage and potential compliance gaps, mapped from findings you can trace back to the assessment that produced them.
Supported frameworks
HIPAAPCI DSSFedRAMP Low / Moderate / HighNIST SP 800-53NIST CSFCMMCCIS ControlsSOC 2ISO 27001FERPAGLBA
Framework modes
HIPAA security mode
- Access control and authentication
- Encryption posture
- Vulnerability management
- Audit logging and patching
- Network exposure and account management
PCI DSS mode
- Label CDE, segmented and out-of-scope assets
- Network security and secure configuration
- Vulnerability management and access control
- Logging, application security and penetration testing
FedRAMP mode
- Low, Moderate and High baselines
- Applicable NIST SP 800-53 controls
- POA&M workflow with milestones
- Weakness, owner, scheduled completion and evidence
Control status you can defend
Each mapped control is reported as Covered, Partial, Gap, Not Tested or Not Applicable — with the findings and evidence behind the status.
