Need a Compliance Readiness Check?
Trust Delphitek


Automated assessments, scheduled reporting and on-demand compliance readiness insights.
Turn compliance readiness into a recurring revenue service.
Deliver and manage multi-tenant assessments, gap analysis, reporting and compliance readiness management through a single platform.

ASD Essential Eight
ISO/IEC 27001
CIS Controls v8
SOC 2 Type II
NIST CSF 2.0
SMB1001
PCI DSS v4.0
APRA CPS 234
CMMC 2.0
Privacy Act
APRA CPS 230
SOCI Act
ISO 22301
ISO 27701
GDPR
HIPAA
DORA
NIS2
NIST 800-53
IRAP Readiness
FedRAMP Readiness
Compliance Framework Library
Compliance frameworks your clients need.
Essential Eight is included in all platform tiers per tenant.
Additional frameworks unlock via add-on purchase, applied at tenant level.
Pricing per tenant per year.
Included With Every Subscription — Tiers: Basic | Pro | Premium | Enterprise
ASD Essential Eight
Australian Government mandatory baseline. Maturity Level 0–3 scoring across all 8 mitigation strategies, automated from your tenant environment.
✓ Included in all tiers
8 strategies
3 maturity levels
Add-ons
Expand your compliance readiness offering.
Add compliance readiness frameworks to your service offering.
Each add-on unlocks new framework scan engines, control mappings and report suites.
Pricing per tenant per year.
AU-Native Regulatory — APRA, critical infrastructure, privacy & government
APRA CPS 234
Australian Prudential Regulation Authority Information Security standard readiness assessment across all 24 substantive paragraphs. For entities that are, or expect to become, APRA-regulated.
Add-on
APRA CPS 230
Australian Prudential Regulation Authority Operational Risk Management standard readiness assessment across 46 substantive paragraphs. For entities that are, or expect to become, APRA-regulated.
Add-on
SOCI Act (CIRMP)
Security of Critical Infrastructure Act 2018 (CIRMP Rules) readiness assessment across 11 sections.
For responsible entities of critical infrastructure assets.
Add-on
Privacy Act Compliance
Australian Privacy Principles (13 APPs) readiness assessment.
Add-on
IRAP Readiness
Curated Australian Government ISM readiness/gap-analysis indicator across 165 controls.

Add-on
International Standards — ISO management systems, SOC 2, CIS & NIST
ISO/IEC 27001:2022
International information security management standard. Annex A technological control evidence, collected automatically from your environment.
Add-on
ISO 22301 (BCMS)
Business Continuity Management System readiness assessment (ISO 22301:2019) across 26 sub-clauses, reusing the same clause-based structure as ISO/IEC 27001.
Add-on
ISO 27701 (PIMS)
Privacy Information Management System readiness assessment, extending ISO/IEC 27001 across 51 controls (Clause 5 + Annex A + Annex B). Requires an active ISO 27001 add-on.
Add-on
SOC 2 Type II Readiness
Trust Services Criteria evidence gathering for security, availability, and confidentiality readiness assessments.

Add-on
CIS Controls v8
Center for Internet Security critical controls.
Automated evidence collection across Implementation Groups 1–3.
Add-on
NIST CSF 2.0
Automated evidence mapping across Govern, Identify, Protect, Detect, Respond, and Recover functions.

Add-on
US Federal & Defense — DoD supply chain, federal control baselines & cloud authorization
CMMC 2.0
Cybersecurity Maturity Model Level 2, built on NIST SP 800-171 Rev 2's 110 security requirements. A readiness indicator only
Add-on
NIST 800-53
NIST SP 800-53 full Moderate Impact Baseline readiness assessment across 287 controls.
Add-on
FedRAMP Readiness
NIST 800-53 baseline plus FedRAMP-specific process overlay readiness assessment across 291 controls.
Add-on
EU & Global Regulatory — data protection, operational resilience & cyber directives
GDPR
EU General Data Protection Regulation readiness assessment across 46 substantive Articles.
Add-on
DORA
EU Digital Operational Resilience Act readiness assessment across 24 entity-facing Articles. For financial entities with EU operations or EU clients.

Add-on
NIS2
EU NIS2 Directive readiness assessment across 13 entity-facing provisions. Assesses the EU-level Directive baseline only.
Add-on
HIPAA Security Rule
HIPAA Security Rule readiness assessment across all 22 standards.
Add-on
Payment Industry
PCI DSS v4.0
Payment Card Industry Data Security Standard readiness assessment across all 12 official Requirements. A readiness indicator only.
Add-on
SMB
SMB1001 Bronze
CSCAU SMB1001 Bronze tier compliance readiness framework — automated readiness assessment built for the technical environment most Australian SMBs already run on.
Add-on
Unified Compliance Posture
Ongoing Compliance Readiness.
Every Framework.
See managed tenant compliance posture across all active frameworks from a single dashboard: identify gaps, track maturity, get notified of drift detection and prioritise remediation across every standard.
Company Name Pty Ltd — Compliance Readiness Overview
ASD Essential Eight
ML 2
Active
ISO/IEC 27001
74%
Add-on
CIS Controls v8
30%
Add-on
SOC 2 Readiness
Locked
NIST CSF 2.0
Locked
Platform Capabilities
Everything Your Managed Service Provider (MSP) Business Needs.
From evidence collection to generating reports, Delphitek Compliance Readiness Platform handles the Compliance Readiness Platform lifecycle across every framework.
Multi-Tenant Dashboard
Manage multiple customer tenants from a single MSP portal.
Evidence Collection
Read-only integration with your environment collects evidence.
Various Professional Reports
Reports generated for each framework assessed.
Add-ons
Add framework add-ons as your MSP's or Business service offering grows. Each additional framework unlocks new scan capabilities and report suites.
How It Works
Compliance Readiness Simplified.
A repeatable, scalable workflow your team can run for managed tenant across every framework.
1
Add Tenant
Connect your client's tenant with secure, read-only access. Agent evidence collection extends the capabilities of the assessments, findings and report output.
2
Select Framework
Choose which compliance framework to assess or any framework add-on you've unlocked.
3
Run Assessment
Delphitek collects evidence, scores controls against the framework and identifies gaps.
4
Deliver Reports
Download reports, schedule assessments and share with client stakeholders.
Platform Tiers
Ongoing compliance readiness assessments.
Essential Eight is included in every subcription tier.
Framework add-ons unlock additional compliance frameworks.
Pricing per tenant per year in AUD (excl. GST). A one-time MSP tenant onboarding fee applies.
(Minimum 12-month commitment)
Basic
$/yr

✓ Essential Eight included

Health Check

  • ASD Essential Eight assessment
  • Cloud scan (all 8 controls)
  • Cloud control gap findings
  • Core report suite




A cloud-only snapshot — Essential Eight's scoring model requires endpoint-level evidence for a Maturity Level rating. Get there with Pro (adds the endpoint agent) or by completing manual evidence, included at every tier.

Enquire Now
Pro
$/yr

✓ Essential Eight included

Scaling Compliance Offering

  • Everything in Basic
  • Hybrid scan
    Cloud + Endpoint Agent
  • 3rd party integrations
  • Compliance drift alerts
  • Scan-to-scan comparison



Enquire Now
Enterprise
$/yr

✓ Essential Eight included

Enterprise Compliance Management

  • Everything in Premium
  • Custom branding & White-labelled reports
  • MSP-wide compliance summary
  • Self-service onboarding wizard
  • Engineering Runbook
  • Priority Onboarding


Enquire Now

Need a Compliance Readiness Check?
Trust Delphitek.


Request a Demo