# Tidal Control > Tidal Control is an EU-based GRC (Governance, Risk, and Compliance) platform that automates compliance for 30+ frameworks including ISO 27001, SOC 2, NIS2, GDPR, and DORA. Audit ready in 90 days, guaranteed. Tidal Control combines a compliance automation platform with expert consultancy services. Founded by information security experts and ethical hackers with over 35 years of industry and Big 4 experience. ISO 27001 certified. All data stored in the EU on Microsoft Azure. ## Product Features - [Risk Assessment](https://tidalcontrol.com/features/risks): AI-powered risk assessment that learns from your company context to assess and manage risks - [Policy Center](https://tidalcontrol.com/features/policies): Pre-written policy templates with smart automation for policy lifecycle management - [Controls Management](https://tidalcontrol.com/features/controls): Flexible control libraries with automation, clear ownership, and real-time insights - [Integrations](https://tidalcontrol.com/features/integrations): Automated evidence collection from Microsoft, AWS, Jira, and more (150+ tests) - [Issues Management](https://tidalcontrol.com/features/issues): Centralized system for audit findings and improvement tracking - [Vendor Management](https://tidalcontrol.com/features/vendors): Automated vendor risk assessments with comprehensive vendor database ## Supported Frameworks - [ISO 27001](https://tidalcontrol.com/frameworks/iso27001): Information security management system certification - [SOC 2](https://tidalcontrol.com/frameworks/soc2): Service Organization Control 2 compliance - [NIS2](https://tidalcontrol.com/frameworks/nis2): EU Network and Information Security Directive - [GDPR](https://tidalcontrol.com/frameworks/gdpr): General Data Protection Regulation compliance - [DORA](https://tidalcontrol.com/frameworks/dora): Digital Operational Resilience Act compliance - [ISO 9001](https://tidalcontrol.com/frameworks/iso9001): Quality management system certification - [ISO 14001](https://tidalcontrol.com/frameworks/iso14001): Environmental management system certification - [ISO 22301](https://tidalcontrol.com/frameworks/iso22301): Business continuity management certification - [ISO 27701](https://tidalcontrol.com/frameworks/iso27701): Privacy information management - [ISO 42001](https://tidalcontrol.com/frameworks/iso42001): AI governance and management - [NIST Cybersecurity Framework](https://tidalcontrol.com/frameworks/nist-csf): Cybersecurity risk management - [NIST SP 800-53](https://tidalcontrol.com/frameworks/nist-sp800-53): Security and privacy controls - [CIS Controls](https://tidalcontrol.com/frameworks/cis-controls): Center for Internet Security best practices - [NEN 7510](https://tidalcontrol.com/frameworks/nen7510): Healthcare information security (Netherlands) - [All Frameworks](https://tidalcontrol.com/frameworks/all): Complete overview of 30+ supported frameworks ## Pricing & Subscriptions - [Pricing Overview](https://tidalcontrol.com/pricing): Subscription plans from EUR 249/month, no hidden fees, unlimited users - [Essential](https://tidalcontrol.com/subscriptions/essential): From EUR 249/month - ISO 9001, GDPR, NIS2 QM10 and other foundational frameworks - [Professional](https://tidalcontrol.com/subscriptions/professional): From EUR 499/month - ISO 27001, SOC 2, and 30+ policy templates with 150+ automated tests - [Scale](https://tidalcontrol.com/subscriptions/scale): From EUR 1,699/month - unlimited frameworks, advanced automation, dedicated account management ## Consultancy Services - [Implementation](https://tidalcontrol.com/consultancy/implementation): Expert-guided certification with a certification guarantee (money back if not certified) - [Maintenance](https://tidalcontrol.com/consultancy/maintenance): Ongoing consultant support to maintain audit-readiness - [Partner Directory](https://tidalcontrol.com/consultancy/directory): Network of certified implementation partners ## Customer Case Studies - [Nedscaper](https://tidalcontrol.com/blog/a-race-against-time-how-nedscaper-achieved-iso-27001-iso-9001-in-12-weeks): How Nedscaper achieved ISO 27001 and ISO 9001 in 12 weeks - [Dembrane](https://tidalcontrol.com/blog/from-standstill-to-sales-how-dembrane-turned-compliance-into-their-competitive-advantage): How Dembrane turned compliance into a competitive edge - [Cbyte](https://tidalcontrol.com/blog/from-trust-to-demonstrability-how-cbyte-uses-digital-compliance-as-foundation-for-scalable-growth): How Cbyte uses digital compliance for scalable growth - [Triagen](https://tidalcontrol.com/blog/triagen-explains-how-much-ai-can-really-speed-up-your-compliance-journey): How much AI can really speed up a compliance journey - [Aivory](https://tidalcontrol.com/blog/from-first-compliance-step-to-audit-with-0-findings-how-aivory-achieved-iso-27001-nen-7510-in-three-months): How Aivory achieved ISO 27001 and NEN 7510 in three months with 0 findings - [Floryn](https://tidalcontrol.com/blog/managing-risk-in-a-fast-growing-fintech-how-floryn-made-compliance-scalable): How Floryn made compliance scalable in a fast-growing fintech ## Documentation - [Help & Documentation](https://tidalcontrol.com/docs): Complete product documentation and user guides - [Getting Started](https://tidalcontrol.com/docs/getting-started): Quick start guide for new users - [Assets](https://tidalcontrol.com/docs/assets): Managing and assessing assets - [Risks](https://tidalcontrol.com/docs/risks): Risk assessment and management - [Controls](https://tidalcontrol.com/docs/controls): Setting up and managing controls - [Policies](https://tidalcontrol.com/docs/policies): Policy creation and lifecycle management - [Plans](https://tidalcontrol.com/docs/plans): Compliance plan management - [Tasks](https://tidalcontrol.com/docs/tasks): Task tracking and assignment - [Tests](https://tidalcontrol.com/docs/tests): Automated testing and evidence collection - [Integrations](https://tidalcontrol.com/docs/integrations): Cloud provider and tool integrations - [Issues](https://tidalcontrol.com/docs/issues): Issue tracking and resolution - [Documents](https://tidalcontrol.com/docs/documents): Document management - [Vendors](https://tidalcontrol.com/docs/vendors): Vendor management and assessments - [Personnel](https://tidalcontrol.com/docs/personnel): Staff register, policy acceptance, and portal access - [Frameworks](https://tidalcontrol.com/docs/frameworks): Framework configuration - [FAQ](https://tidalcontrol.com/docs/frequently-asked-questions): Frequently asked questions ## Resources - [Blog](https://tidalcontrol.com/blog): Product updates, industry news, and compliance tips - [Glossary](https://tidalcontrol.com/glossary): Compliance terminology explained ## Company - [About Us](https://tidalcontrol.com/team): Founded by ethical hackers and compliance experts - [Our Mission](https://tidalcontrol.com/mission): Making compliance accessible for organisations of all sizes - [Security](https://tidalcontrol.com/security): ISO 27001 certified, EU data storage, SOC 2 Type II compliant design - [Contact](https://tidalcontrol.com/contact): Get in touch with our team ## Legal - [Privacy Policy](https://tidalcontrol.com/privacy): Privacy and data protection policy - [Terms of Service](https://tidalcontrol.com/terms): Website terms and conditions - [Responsible Disclosure](https://tidalcontrol.com/disclosure): Security vulnerability reporting