---
title: "Free Compliance & Risk Self-Assessments — Certified Information Security"
description: "Certified Information Security delivers enterprise-grade training, certification, and advisory services built on globally respected cybersecurity and compliance frameworks."
url: "https://www.certifiedinfosec.com/assessments"
date: "2026-07-21T09:30:39+00:00"
language: "en-GB"
---

# Multi-Framework Assessment System by Certified Information Security

    ## What do you want to assess?

 [ User Guide ](https://www.certifiedinfosec.com/media/com_cisassess/docs/CIS%20Multi-Framework%20Assessment%20User%20Guide.pdf)

 ISO 38507 AI Governance

 Coming Soon

 ISO 42001 AI Management (Annex A Controls and Annex B Practices Only)

38 controls

 NIST AI RMF 1.0

72 controls

 NIST CSF 2.0

106 controls

 ISO 27001 ISMS (ISO 27001 Annex A Controls and ISO 27002 Practices Only)

93 controls

 ISO 22301 BCMS

 Coming Soon

 ISO 37301 Compliance

 Coming Soon

 ISO 31000 ERM Family

  4 standards · 1 unified assessment  ISO 31000 · ISO/IEC 23894 · IEC 31010 · ISO/IEC 27005

 ## Scope the AI Assessment

To properly assess an organization within its context, you need to determine the assessed organization's role relative to AI since its processes will vary depending upon that role and its AI application.

 Select the vendor's primary role in the AI ecosystem. This determines which controls are applicable by default.

 ## Scope the AI RMF Assessment

 To properly assess an organization within its AI-technology context, you need to determine whether generative AI is within scope of the assessment. The NIST AI RMF Playbook recommends approximately 431 practices (tasks) supporting the 72 baseline subcategory control objectives and controls, and the NIST AI 600-1 Generative AI Profile adds 211 additional Suggested Actions across 49 of those 72.

 Select the scope of your AI RMF assessment. This determines whether the AI 600-1 Generative AI Profile overlay is included.

 ## Choose a Family Member to Assess

 This is a composite assessment family. Select which standard you would like to assess first. You can return to this picker at any time and assess additional family members.

 Select one of the family members below to scope your assessment.

 ## Customize your Assessment Report

 Your Organization \*

  Lead Assessor \*

  Assessor Title / RoleProfessional title shown on the report cover and Detailed Evidence pages. Defaults to “Lead Assessor” per ISO 19011:2018 § 5.4.4.

 Assessed Organization \*

 Assessment Date

 ### Terms of Use

This assessment tool is provided by Certified Information Security for professional use. By proceeding, you acknowledge that: (1) this tool is proprietary and protected by copyright; (2) the assessment methodology, control mappings, and report format are the intellectual property of Certified Information Security; (3) you will not copy, modify, reverse-engineer, or redistribute this tool; (4) results are based on assessor judgment and do not constitute legal advice or regulatory certification; (5) Certified Information Security is not liable for decisions made based on assessment results.

Use at Your Own Risk; No Guarantees

This tool is provided for informational purposes only. By using this software, you acknowledge and agree that:

- **No Warranty:** The tool and its results are provided "as is" and "as available" without any warranty of accuracy, completeness, or reliability.
- **Assumption of Risk:** You assume all risks associated with the use of this tool, including any decisions made based on its output.
- **No Professional Advice:** The results generated do not constitute professional advice. You should consult with a qualified professional before taking action.
- **Limitation of Liability:** Certified Information Security shall not be liable for any direct, indirect, or consequential damages or losses resulting from your use of, or inability to use, this tool.

Other applicable terms and restrictions are available for review at [Website Terms and Conditions of Use](https://www.certifiedinfosec.com/home/legal/web-site-terms), [Privacy Policy](https://www.certifiedinfosec.com/home/legal/privacy-policy), and [Copyright Statement](https://www.certifiedinfosec.com/home/legal/copyright).

   I accept these terms of use

 ##  Multi-Framework Assessment System by Certified Information Security

 v2.5.42.71

  **Sign in to your account**

 Since no assessment data or history is recorded or maintained for anonymous users, optional login is only necessary if you want to be able to resume, edit, or report previous assessments. If you already have an account, login now or choose to create a free account below. If you don't want to create an account, you still have full access to all other functionality as an anonymous user.

 Username

 Password

Don't have an account?

 Create an account to save assessments and download reports.

 First Name \*

 Last Name \*

 Username \*

 Email \*

 Country -- Select --

## Schema

```json
{ "@context": "https://schema.org", "@type": "BreadcrumbList", "itemListElement": [ { "@type": "ListItem", "position": 1, "name": "Home", "item": "https://www.certifiedinfosec.com" }, { "@type": "ListItem", "position": 2, "name": "Assessments", "item": "https://www.certifiedinfosec.com/assessments" } ] }
```
