Kingkong81/grc-compliance-auditor
0
GRC Compliance Auditor (Multi-Framework)
An AI-powered compliance auditing application that analyzes documents and evidence against major regulatory frameworks.
โ Key Features ... ---
๐ก๏ธ GRC Compliance Auditor (Multi-Framework)
An AI-powered compliance auditing application that analyzes documents and evidence against major regulatory frameworks.
โ Key Features
- ๐ Upload
.docx,.csv,.jsonfiles - ๐ Automatic control mapping and gap analysis
- ๐ Framework compliance scoring
- ๐ง Auto-suggested remediation playbooks
- ๐๏ธ Multi-framework support:
- ISO 27001
- UAE IA
- NESA
- PCI DSS
- GDPR
- HIPAA
- ITIL
- ISO 22301
- ๐ AWS IAM & S3 and Azure Policy scanning integrations
- ๐ Evidence strength indicators
- ๐ Plugin-based extensibility
โ๏ธ Tech Stack
- Python + Streamlit
- Ollama/Mistral/LLama3 for inference
- Hugging Face Spaces (GPU-enabled)
- Pandas, LangChain, Boto3, Azure SDK
๐ How to Use
- Upload a compliance document (e.g., policy, SOP).
- Optionally upload supporting evidence.
- Select a compliance framework.
- Click "Run Audit" to get:
- Gap analysis
- Control mapping
- Remediation suggestions
- Exportable reports
๐ฆ File Support
.docxfor policy docs.csv/.jsonfor structured evidence
๐งช Demo / Testing
Sample test data will be auto-generated under sample_data/ or can be uploaded manually.
๐ License
MIT License
๐ก Contributions Welcome
Please open issues or submit pull requests for new framework support, bug fixes, or UI enhancements.
Built with โค๏ธ by [Your Name] using open-source tools and GenAI frameworks.
