Solutions

Technical control coverage, honestly reported

A scan does not prove compliance. Guardian reports technical control coverage and potential compliance gaps, mapped from findings you can trace back to the assessment that produced them.

Supported frameworks

HIPAAPCI DSSFedRAMP Low / Moderate / HighNIST SP 800-53NIST CSFCMMCCIS ControlsSOC 2ISO 27001FERPAGLBA

Framework modes

HIPAA security mode

  • Access control and authentication
  • Encryption posture
  • Vulnerability management
  • Audit logging and patching
  • Network exposure and account management

PCI DSS mode

  • Label CDE, segmented and out-of-scope assets
  • Network security and secure configuration
  • Vulnerability management and access control
  • Logging, application security and penetration testing

FedRAMP mode

  • Low, Moderate and High baselines
  • Applicable NIST SP 800-53 controls
  • POA&M workflow with milestones
  • Weakness, owner, scheduled completion and evidence

Control status you can defend

Each mapped control is reported as Covered, Partial, Gap, Not Tested or Not Applicable — with the findings and evidence behind the status.