Overview
Playbooks provide:- Pre-configured compliance check templates
- Coverage of major security frameworks and regulations
- One-click application to any company
- Consistent implementation across your organization
Available Playbooks
MSPortal includes playbooks for common security frameworks and regulations:CIS Controls v8 Basic
Essential security measures for organizations with limited resources
HIPAA Security Rule
Healthcare compliance requirements for protected health information
NIST Cybersecurity Framework
Industry-standard cyber risk management framework
PCI DSS Essentials
Payment card industry data security standards
Microsoft 365 Security
Cloud security best practices for M365 environments
SOC 2 Type II Readiness
Service organization audit compliance preparation
ISO 27001 Foundation
Information security management system controls
GDPR Data Protection
EU data protection regulation essentials
Remote Workforce Security
Controls for hybrid and remote work environments
Small Business Fundamentals
Foundational cybersecurity for SMBs
Playbook Contents
Each playbook contains multiple compliance checks (typically 10-30), with each check including:| Component | Description |
|---|---|
| Title | Clear description of the control |
| Category | Classification (e.g., Access Control, Asset Management) |
| Priority | High, Medium, or Low importance |
| Why Important | Business justification for the control |
| Guidance | Implementation recommendations |
Browsing Playbooks
Filter by Category
Filter playbooks by type:
- Security Framework
- Regulation
- Best Practice
- Technology Specific
- General
Applying a Playbook
Review Checks
A modal displays all checks included in the playbook. Review the controls to ensure they’re appropriate for your needs.
Bulk Application
For applying multiple playbooks or managing playbooks at scale, use Settings > Playbooks:- Navigate to Settings > Playbooks
- View all playbooks in a table format
- Select one or more playbooks using checkboxes
- Click Add to apply selected playbooks
- Choose which status list to assign the checks to
Playbook Categories
| Category | Description |
|---|---|
| Security Framework | Industry-standard security control sets (CIS, NIST) |
| Regulation | Compliance with specific laws or regulations (HIPAA, GDPR, PCI DSS) |
| Best Practice | General security recommendations |
| Technology Specific | Controls for specific platforms (Microsoft 365) |
| General | Broad applicability across organizations |
What Happens When You Apply
When you apply a playbook to a company:- All checks from the playbook are copied to the company’s Compliance module
- Checks are assigned to your selected status tracking list
- Each check starts with an initial status ready for assessment
- You can then track, update, and report on compliance status
Playbooks create copies of checks. Changes to a playbook after application do not affect previously applied checks.
Permissions
| Permission | Capability |
|---|---|
read_settings_playbooks | View available playbooks |
manage_settings_playbooks | Apply playbooks to companies |