We use essential cookies to run this site. Analytics & marketing cookies load only with your consent — see our Cookie Policy and Privacy Policy.

Free Resources

Compliance Readiness Checklists

Executive checklists from CyberSigma's CERT-In empanelled, PCI QSA authorised consultants. Get the one you need — delivered instantly. Prefer an interactive readiness score? Try our free compliance self-assessments across 20 frameworks.

Premium audit workbook

Server Security Hardening Checklist

51 controls for Windows Server, RHEL, Ubuntu, SUSE, ESXi & Unix — Excel + PDF, mapped to CIS, NIST, ISO 27001 & PCI DSS.

View & download →
Premium audit workbook

Switch & Network Device Hardening Checklist

39 controls for Cisco, Juniper, Aruba, Arista & Huawei — Excel + PDF, mapped to CIS, NIST, ISO 27001 & PCI DSS.

View & download →
Premium audit workbook

Firewall Security Configuration Review Checklist

130+ controls for Palo Alto, Fortinet, Cisco, Check Point & cloud firewalls — Excel + PDF, mapped to PCI DSS, ISO 27001, SOC & NIST.

View & download →
Premium audit workbook

Database Security Hardening Checklist

41 controls for Oracle, SQL Server, MySQL/MariaDB, PostgreSQL & MongoDB — identity, privilege, encryption, auditing & backup. Excel + PDF, mapped to CIS, NIST, ISO 27001 & PCI DSS.

View & download →
Premium audit workbook

Cloud Security Hardening Checklist

37 controls for AWS, Microsoft Azure, Google Cloud, Oracle Cloud (OCI) — Excel + PDF, mapped to CIS, NIST, ISO 27001 & PCI DSS.

View & download →
Premium audit workbook

Web & Application Server Hardening Checklist

31 controls for Apache HTTP Server, NGINX, Microsoft IIS, Apache Tomcat — Excel + PDF, mapped to CIS, NIST, ISO 27001 & PCI DSS.

View & download →
Premium audit workbook

Container & Kubernetes Hardening Checklist

32 controls for Docker, Kubernetes (upstream), Red Hat OpenShift, Managed EKS / AKS / GKE — Excel + PDF, mapped to CIS, NIST, ISO 27001 & PCI DSS.

View & download →
Premium audit workbook

Workstation & Endpoint Hardening Checklist

30 controls for Windows 10 / 11, macOS, Management (Intune / Jamf / GPO) — Excel + PDF, mapped to CIS, NIST, ISO 27001 & PCI DSS.

View & download →
Premium audit workbook

Microsoft 365 & Google Workspace Hardening Checklist

32 controls for Microsoft 365 (Entra / Exchange / SharePoint), Google Workspace — Excel + PDF, mapped to CIS, NIST, ISO 27001 & PCI DSS.

View & download →
Premium audit workbook

Web Browser Hardening Checklist

25 controls for Google Chrome, Microsoft Edge, Mozilla Firefox — Excel + PDF, mapped to CIS, NIST, ISO 27001 & PCI DSS.

View & download →
Premium audit workbook

Mobile Device Hardening Checklist

29 controls for Apple iOS / iPadOS, Google / Samsung Android — Excel + PDF, mapped to CIS, NIST, ISO 27001 & PCI DSS.

View & download →
Premium audit workbook

AI Agent Passport Template

A governance & security record for every autonomous AI agent — identity, owner, access, autonomy limits, logging & kill switch. Free editable PDF, mapped to ISO 42001, OWASP Agentic Top 10, ISO 27001, PCI DSS & DPDP.

View & download →

PCI DSS 4.0 Readiness Checklist

Scope, secure systems, access, monitoring & vendor controls for your QSA assessment.

India DPDP Act Readiness Checklist

Notice, consent, data-principal rights, security & breach reporting under the DPDP Act 2023.

ISO/IEC 27001:2022 Readiness Checklist

ISMS scope, risk treatment, Annex A controls & audit readiness for certification.

SOC 2 Readiness Checklist

Trust Services Criteria, evidence cadence & pre-audit gap remediation.

VAPT Readiness Checklist

Scoping, rules of engagement, coverage & remediation for pen testing.

CERT-In Cyber Audit Readiness Checklist

Governance, technical controls & CERT-In directions for an empanelled audit.

GDPR Readiness Checklist

RoPA, data-subject rights, security & international transfer safeguards.

HIPAA Security Readiness Checklist

Administrative, physical & technical safeguards for ePHI.

UAE IA / NESA Compliance Checklist

Strategic, operational & technical controls for UAE Information Assurance.

NIST CSF 2.0 Readiness Checklist

Govern, Identify, Protect, Detect, Respond & Recover — the NIST Cybersecurity Framework.

CIS Controls v8 Readiness Checklist

The 18 CIS Critical Security Controls — practical, prioritised cyber hygiene.

OWASP Top 10 AppSec Checklist

Secure web apps & APIs against the OWASP Top 10 — pairs with our VAPT service.

AI & LLM Security Readiness Checklist

Prompt injection, data leakage, model supply chain & governance — OWASP LLM Top 10 + NIST AI RMF.

RBI Cyber Security Framework Checklist

Governance, baseline controls, SOC & incident reporting for banks & NBFCs.

SEBI CSCRF Readiness Checklist

Cybersecurity & Cyber Resilience Framework for SEBI-regulated entities.

PCI SSC Qualified Security Assessor — CYBERSIGMA CONSULTING SERVICES LLP

QSA Authorised
CEMEA · Asia Pacific · USA

Ready to discuss your Compliance checklists requirement?

CERT-In empanelled · PCI QSA authorised — a senior consultant responds within 4 business hours. Free, no obligation.

Talk to an expert →Request a scope review

Delivering from Noida · Mumbai · Bengaluru · Pune · Dubai · Cairo · Melbourne see all locations & addresses →