Resource library

Compliance & Risk Management Insights

Expert insights, practical implementation notes, and operator-grade guidance for AI-first compliance management, audit readiness, and security workflows.

Library
69

Published posts for technical buyers, operators, and founders.

Focus
SOC 2 + ISO

Practical guidance across compliance, evidence, vendors, and incidents.

Format
Operator notes

Less buzzword content, more implementation-level detail.

Featured reads

A fast way to understand how Humadroid thinks about compliance operations, audit readiness, and replacing consultant-heavy workflows.

Filter by category:
All posts

All Articles

Page 9 of 12 (69 articles total)
ISO 27001 Annex A Controls: The Complete 2022 Guide
Certification 13 min read

ISO 27001 Annex A Controls: The Complete 2022 Guide

ISO 27001 Annex A contains 93 security controls organized into four categories that form the backbone of your information security management system. With the 2013 version officially expired as of October 2025, every organization pursuing or maintaining ISO 27001 certification now works with the 2022 revision. This guide explains how the controls are structured, what changed from 2013 to 2022, which 11 new controls were added, and how to select, implement, and document controls based on your actual risks.

Bartek Hamerliński
Explore by category

Browse the library by workflow

Stay close to the product

Want the operator view, not just the marketing version?

Use the blog to understand how Humadroid thinks about trust centers, evidence collection, risk workflows, and audit prep before you talk to us.