Compliance Policy
Define your own compliance rules on top of built-in standards. Enforce them continuously across your entire fleet. Every device, every change, every time.
- ✓Built-in NIS2 / ISO 27001 / PCI-DSS / CIS templates
- ✓Custom rule builder (no scripting)
- ✓AND/OR conditional logic
- ✓Applies to switches, routers, firewalls, APs
- ✓Continuous re-evaluation on config change
- ✓Weighted scoring per rule
Standards + Your Own Rules
Start from industry frameworks and extend them with rules specific to your infrastructure, your team, and your regulatory context.
Built-In Standards
Start from NIS2, ISO 27001, PCI-DSS, and CIS templates. Pre-built rule sets ready to activate in one click.
Custom Rule Builder
Write your own rules using plain readable conditions. No scripting, no regex, no YAML. Just logic.
AND/OR Logic
Rules can combine multiple conditions. SSH v2 AND banner set AND Telnet disabled, all in one rule.
All Device Types
Switches, routers, firewalls, and access points. Every device class evaluated against the same rule engine.
Continuous Enforcement
Rules are re-evaluated on every config change. No waiting for the next scheduled scan.
Weighted Scoring
Each rule has a configurable weight (0–10) affecting the overall compliance score. Your priorities drive the number.
How the Rule Model Works
A rule is a set of plain-language conditions combined with AND/OR logic. No scripting. No configuration language to learn. Just readable statements that match what you actually want to enforce.
- 1
Plain readable conditions
"Is SSH v2 enabled AND is Telnet disabled AND is banner login set", each condition is a statement anyone on your team can read.
- 2
Group by standard or category
Rules can be grouped by framework (NIS2, ISO 27001) or by your own categories (access hardening, logging, encryption).
- 3
Weighted scoring per rule
Each rule carries a configurable weight from 0 to 10. A rule with zero weight doesn't affect the score. Maximum weight drives it. Your priorities, not ours.
RULE: SSH Hardening
Condition: SSH v2 enabled
AND: Telnet disabled
AND: Banner login set
Weight: 8 / 10, Standards: NIS2, ISO 27001
Rule: SSH Hardening
Weight: 8/10Compliance Score
4 of 6 conditions passing · 2 violations affecting score
Frequently Asked Questions
Common questions about the compliance policy engine
Build Your Compliance Baseline
Standards + your own rules. Continuous. Automatic.
