Compliance Frameworks.
Framework Coverage
20+ compliance frameworks. Each with lifecycle-specific guidance, continuous evidence collection, and cross-framework leverage through the NIST 800-53 derivation chain. One security posture. Every framework computed.
Frameworks
Every framework your organization needs. Assessed from one security posture.
Redoubt Forge supports frameworks across US government, international standards, cyber defense, AI governance, and custom organizational requirements. Work done for one framework compounds across every other through the derivation chain.
18 items
The root control catalog. 1,189 controls across 20 families. Every derived framework traces back here.
Cloud authorization for federal agencies. Low, Moderate, High, and LI-SaaS baselines with OSCAL-native packages.
Third-party verification for the defense industrial base. 110 practices mapped to NIST 800-171.
CUI protection for defense contractors. 110 security requirements derived from NIST 800-53. DFARS compliance.
NIST 800-37 authorization lifecycle. Seven steps from Prepare through Monitor for federal systems and DoD.
Security categorization and control selection for National Security Systems with classification overlays.
State-level cloud authorization aligned to FedRAMP. Continuous monitoring and marketplace listing.
International ISMS standard. 93 Annex A controls across 4 themes. Global certification readiness.
Trust Service Criteria for security, availability, and confidentiality. Continuous readiness for AICPA assessments.
Payment card security across 12 requirement families. Cardholder data environment monitoring and validation.
ePHI protection for healthcare. Technical, administrative, and physical safeguards assessed continuously.
Six core functions including Govern. Bridges regulatory frameworks to operational security programs.
18 prioritized safeguards across three Implementation Groups. Focused on real-world attack vectors.
Zero Trust Architecture reference model. Never trust, always verify. Federal mandate under EO 14028.
Five-pillar maturity model from Traditional through Optimal. Phased ZTA implementation roadmap.
AI risk management across Govern, Map, Measure, Manage. Trustworthy AI lifecycle for any AI system.
AI measurement and evaluation methodology. Quantitative trustworthiness assessment for AI systems.
Organization-defined control structures with AI-suggested NIST 800-53 mappings. Enterprise tier.
Something is being forged.
The full platform is under active development. Reach out to learn more or get early access.