CSFaaS is a multi-tenant Governance, Risk and Compliance (GRC) platform operated by DarkProtect. It brings your frameworks, policies, controls, risks, audits, third parties, systems and evidence together in one place, so your compliance programme lives in a single tool instead of a folder of spreadsheets.
The application runs at app.csfaas.com in a desktop browser. Mobile devices are not supported: if you open the app on a phone, it asks you to switch to a desktop or laptop computer.
1. What you can do with CSFaaS
- Align cybersecurity efforts with your business objectives;
- Tailor cybersecurity frameworks to your environment;
- Develop, approve and maintain security policies and controls;
- Identify, assess and manage risks across your organisation;
- Create and monitor remediation plans;
- Audit your environment and track findings to resolution;
- Document your systems and third parties;
- Collect and organise the evidence that proves it all.
2. Core modules
Each module has its own entry in the left menu. In order:
| Module | What it does |
|---|---|
| Dashboard | Your compliance cockpit: key indicators, deadlines and activity across the whole workspace. |
| Profile | Your organisation's context: identity, contacts, structure and compliance environment. |
| Audit | Plan, perform and track audits with questions, findings, recommendations and actions. |
| Frameworks | Import or build cybersecurity frameworks and tailor them to your environment. |
| Policies | Develop, version and approve security policies and their controls. |
| Controls | Manage every policy control from one consolidated view. |
| Demands | Handle risk assessment requests from draft to completion. |
| Risks | The risk registry: document, assess and follow every identified risk. |
| Remediation | Track the action plans that mitigate your risks. |
| Third Parties | Inventory and assess your vendors and partners. |
| Systems | Catalogue your systems, their data and their dependencies. |
| Forms | Build and send forms to collect information internally or externally. |
| Evidences | Store and organise the evidence files and links behind your compliance programme. |
| Databases | Configuration catalogues plus the controls and threat databases used across the workspace. |
| Settings | Configure the workspace: framing, users and roles, workflows, matrices, billing and more. |
3. Everything lives in a workspace
All of the above happens inside a workspace: an isolated environment with its own data, members, roles and settings. You can own or join several workspaces and switch between them from the header. When you first sign up, CSFaaS even prepares a personal demo workspace, a fully populated example company you can explore and edit freely. The next pages of this section walk you through signing in, the interface and workspace management.
Tip: the left menu adapts to each workspace. Modules can be switched on or off in Settings, Framing, and entries you have no permission to read are hidden.