Blog
Insights and expertise from Thoropass
Introducing NIST CSF, CMMC Level 1 and Cyber Essentials
Strengthen your baseline security posture and align with the latest industry guidance. Our platform and experts are here to help you move forward with clarity and speed.

Compliance /
Compliance software solutions: Key features to consider in 2025
Compliance management software equips organizations with the capability to meet both governmental guidelines and professional standards, thereby fostering safer work environments and diminishing ecological footprints.

Compliance /
NIST CSF 2.0: Essential updates for enhanced cybersecurity
Released in February 2024, the NIST Cybersecurity Framework (CSF) 2.0, provides a flexible framework to help organizations manage cybersecurity risks. It is suitable for a wide range of organizations, regardless of size, sector, or maturity level.

Compliance /
Your ultimate guide to IT risk assessment
A risk assessment (sometimes referred to as an IT risk assessment) is the process of identifying, evaluating, and mitigating risks associated with an organization’s IT systems and environment. This essential practice helps protect customer data, ensure compliance, and improve overall security/privacy. In this blog post, we’ll help you understand a risk assessment, its key components, and step-by-step instructions for conducting your own assessments.

Product /
Four new frameworks from Thoropass: HIPAA, HITRUST, and ISO changes to streamline your compliance
Thoropass now supports four new compliance frameworks to meet the growing demands of AI governance, data privacy, and health information protection. These frameworks— HIPAA CE Privacy Rule, HITRUST AI Cybersecurity Assessment, ISO 42001, and ISO 27018—are now available on our platform, empowering organizations to enhance their compliance posture and safeguard sensitive information more effectively.

From our Partners /
The HITRUST AI security assessment and certification: a trustworthy approach for managing AI risks
AI is revolutionizing industries. It offers immense potential for businesses. However, its complexity introduces new risks that traditional cybersecurity frameworks were not built to manage. From data poisoning to model extraction attacks, AI system deployment introduces threats that could have significant consequences.

We provide the compliance expertise, so you don’t have to
At Thoropass, we’re more than a readiness solution. Our team of experts are equipped with insight and hands-on experience to provide you with industry-leading perspective and guidance.



Stay connected
Subscribe to receive new blog articles and updates from Thoropass in your inbox.
Want to join our team?
Help Thoropass ensure that compliance never gets in the way of innovation.