Featured guide
Create and assess a risk
Learn how to complete CIA and FAIR assessments, add controls, assign treatment actions and manage risk exceptions.
Read the guideExplore PurpleWASP capabilities, follow task-based guidance and understand how Policies, Assets, Risks, Controls, Compliance, provider evidence and Third-Party Risk connect—including Microsoft Entra ID, Qualys, ISO 27001, SOC 2 readiness, Cyber Essentials/Plus, NIST CSF 2.0 and CIS Controls v8.1 workflows.
Map your existing controls and policies to PurpleWASP-supported frameworks and identify your main compliance gaps.
CapabilitiesSee the connected operational workspaces, cross-framework Control reuse, readiness drivers and the role of PurpAI.
Knowledge baseUse task-based guides, FAQs and troubleshooting built around current PurpleWASP workflows.
What changedReview confirmed product changes, resolved issues, administrator actions and links to updated guidance.
AI assistanceLearn how to use PurpleWASP's contextual assistant to understand posture, navigate connected records, prepare work and safely launch authorised workflows.