Skip to Content
Getting StartedConfiguration

Configuration

Configure your SecureHive workspace to match your organization’s security program structure.

Workspace Settings

After initial setup, fine-tune your workspace through Settings → General:

  • Organization profile — Company name, industry, size, and regulatory environment
  • Timezone & locale — Controls date formatting and notification scheduling
  • Branding — Upload your logo for the Trust Portal and exported reports

Compliance Frameworks

SecureHive ships with built-in support for major compliance frameworks. Frameworks with full control data are seeded automatically — others can be imported or customized for your organization.

Compliance & security frameworks

FrameworkCoverageControls
ISO 27001:2022Annex A controls with statement of applicabilityFull CSV import with maturity model
SOC 2 Type IITrust service criteria with evidence collectionSample control groups
NIST CSF 2.0All functions, categories, and subcategoriesFull CSV import with maturity model
NIST 800-53Full control catalog with baselinesSample control groups
HIPAAAdministrative, physical, and technical safeguardsSample control groups
PCI DSS 4.0All requirements with testing proceduresSample control groups
HITRUST CSF v11.2Health information security frameworkSample control groups
CMMC 2.0Level 1–3 practices across all domainsFull CSV import with maturity assessment

AI governance frameworks

FrameworkCoverageControls
ISO 42001:2023AI management system standardFull CSV import
EU AI Act 2024European Union AI regulation complianceFull CSV import
AI Security Standard v1.075 controls across 9 domains covering identity, data handling, vendor management, engineering, and monitoringFull CSV import

Maturity models

FrameworkCoverage
ISO 27001:2022 Maturity5-level maturity scoring across all Annex A domains
NIST CSF 2.0 MaturityMaturity assessment across all CSF functions
CIS Controls v8.1All 18 control groups with implementation group tiers (IG1–IG3) and maturity scoring
CMMC 2.0 MaturityLevel 1–3 maturity assessment with pass/fail scoring
AI Governance Maturity5-level maturity model across strategy, risk, ethics, data, and operations

IT General Controls (ITGC)

FrameworkDomains
ITGC — 4 domainsAccess Controls, Change Management, IT Operations, Backup & Recovery
ITGC — 7 domainsExtended with Program Development, Physical Security, and Vendor Management

Custom ITGC templates can be imported to match your organization’s specific audit scope. SecureHive also supports custom framework imports via CSV — navigate to Settings → Frameworks → Import to upload your own control structures.

Navigate to Settings → Frameworks to enable the frameworks relevant to your organization. SecureHive will automatically create cross-mappings between frameworks so you only need to satisfy each control once.

Integrations

Connect your existing tools to flow data into SecureHive:

  • Vulnerability scanners — Qualys, Tenable, Rapid7
  • Cloud providers — AWS, Azure, GCP configuration auditing
  • Identity providers — Azure AD, Okta, Google Workspace
  • Ticketing — Jira, ServiceNow for remediation tracking

See the API Reference for programmatic integration options.

Last updated on