Compliance Assessment Report
Detects compliance assessment reports identifying regulatory gaps and non-compliance findings.
- Type
- keyword_list
- Confidence
- medium
- Confidence justification
- Medium confidence: keyword-based detection requires corroborative evidence for accurate identification.
- Jurisdictions
- au
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
- Data categories
- governance, legal
- Scope
- narrow
- Risk rating
- 8
Should match
Compliance assessment report received for filing.— Exact 65 discovery probe - report phrase without a finding or named regulatory frameworkCompliance assessment report: compliance finding requires remediation.— Exact 75 probe - report phrase with a concrete compliance status but no named frameworkPrivacy Act compliance assessment report: control is non-compliant and recorded as a compliance finding.— Exact 85 probe - named framework plus concrete non-compliance statusCompliance assessment report: regulatory gap and non-compliance finding— Test match 1Compliance audit with compliance obligation and regulatory risk review— Test match 2Compliance framework monitoring: compliance status and compliance finding— Test match 3
Should not match
Compliance with traffic rules— Non-match 1In compliance with building codes— Non-match 2Sample template for documenting control gaps against the Privacy Act.— Adjacent template language is not a populated assessment recordThe public catalogue lists a regulator review document.— Public catalogue metadata has no populated assessment primarySecurity incident report: root cause and containment findings.— Sibling report language does not satisfy the compliance-assessment primary
Known false positives
- Generic compliance in everyday contexts. Mitigation: Require assessment or report keywords alongside compliance.