GRENZE International Journal of Engineering and Technology
Vol. 12
(2026), Issue 2
A Comprehensive Survey of Information Security Compliance Frameworks
Authors
Sahana Shettigar, Raju K
Abstract
The rapid expansion of cloud computing and digital services has significantly increased the complexity of information security management in modern organizations. To address these challenges, several security compliance frameworks have been developed to guide organizations in protecting sensitive data and maintaining regulatory compliance. This paper provides a comparative survey of widely adopted frameworks, including ISO/IEC 27001, SOC 2, HIPAA, GDPR, and PCI DSS. The study examines their governance structures, control mechanisms, certification processes, and regulatory scopes. It also explores the operational challenges organizations face when implementing multiple compliance frame-works simultaneously. In addition, the paper discusses emerging approaches such as automation and artificial intelligence that support continuous compliance monitoring in cloud environments. The findings suggest that integrated compliance strategies can improve governance efficiency while strengthening cybersecurity resilience across complex digital infrastructures.
Pages:
4352 - 4358