Free Quick Check
A fast baseline across 11 areas of security in about 8 minutes, with AI readiness and AI management included and a clear list of what to fix first.
MaturityIQ assesses your organisation against 40+ frameworks, turns every gap into a dated action, and gives you reports for the board and for IT. Start with the free Quick Check.
Current score
65%
Up 19 points since June
Mar 21%
Jun 46%
Sep 65%
Require multi-factor authentication for remote and administrator sign-ins
A fast baseline across 11 areas of security in about 8 minutes, with AI readiness and AI management included and a clear list of what to fix first.
ISO/IEC 27001, SOC 2, NIST CSF 2.0, Cyber Essentials, NIS2, DORA and more. Each gives a readiness score, area by area.
Every gap becomes an action with an owner, a due date, what done looks like and the evidence to keep. Critical items fall due within 30 days.
Upload evidence against each action. An internal or external auditor accepts it or sends it back with a comment.
Track the policies and records each framework expects. A document verified once counts for every framework that asks for it.
An executive report, a technical report, and a progress report after each reassessment that shows exactly what changed.
IDENTITY & ACCESS · QUESTION 3 OF 6
Describe what you do today in plain language. Every answer maps to one of five levels, from Absent to Optimising, so the score means the same thing every time you measure it.
One score, area by area, and a plan you can put in front of the board.
Plain-language questions and a clear order of work, without hiring a consultant first.
Assess every client under your own logo and name, and show what your work achieved.
Answer in plain language.
Every answer maps to one of five levels, from Absent to Optimising.
Every gap becomes a dated action.
Each has an owner, a due date and the evidence to keep. Critical items fall due within 30 days.
Evidence is reviewed, not assumed.
An internal or external auditor accepts it or sends it back with a comment.
Reports for the board and for IT.
After a reassessment, the progress report shows exactly what changed.
REMEDIATION
Require multi-factor authentication for remote and administrator sign-ins
DOCUMENTS
DOCUMENTS · 3 OF 26
ISO 27001 · SOC 2 · NIS2
ISO 27001 · DORA · PCI DSS
ISO 27001 · SOC 2
Reviewer: add the next review date.
REPORTS
Improved
Identity & Access, Endpoint Security, Incident Response
Slipped
Vulnerability Management, Supplier Security
Pick the standard your customer, regulator or board is asking about. MaturityIQ reports your readiness for it. It does not certify, and it is not legal advice.
ISO/IEC 27001:2022, ISO/IEC 27002:2022, ISO/IEC 27003 and more
COBIT 2019, CMMI v2.0, C2M2 v2.1
ISO 22301:2019, NIST SP 800-30, NIST SP 800-37 and more
ISO/IEC 27017, ISO/IEC 27018, CSA Cloud Controls Matrix v4 and more
GDPR, UK GDPR, NIST Privacy Framework
SOC 2, PCI DSS v4.0, HIPAA / HITECH and more
ISA/IEC 62443-2-1, NIST SP 800-82
OWASP ASVS 4.0, OWASP SAMM 2.0, OWASP Top 10:2021 and more
NIST AI RMF
Start free. Pay when you need the full picture. Prices are in US dollars per month.