CSFaaS is a multi-tenant Governance, Risk and Compliance (GRC) platform operated by DarkProtect. It brings your frameworks, policies, controls, risks, audits, third parties, systems and evidence together in one place, so your compliance programme lives in a single tool instead of a folder of spreadsheets.

The application runs at app.csfaas.com in a desktop browser. Mobile devices are not supported: if you open the app on a phone, it asks you to switch to a desktop or laptop computer.

1. What you can do with CSFaaS

  • Align cybersecurity efforts with your business objectives;
  • Tailor cybersecurity frameworks to your environment;
  • Develop, approve and maintain security policies and controls;
  • Identify, assess and manage risks across your organisation;
  • Create and monitor remediation plans;
  • Audit your environment and track findings to resolution;
  • Document your systems and third parties;
  • Collect and organise the evidence that proves it all.

2. Core modules

Each module has its own entry in the left menu. In order:

ModuleWhat it does
DashboardYour compliance cockpit: key indicators, deadlines and activity across the whole workspace.
ProfileYour organisation's context: identity, contacts, structure and compliance environment.
AuditPlan, perform and track audits with questions, findings, recommendations and actions.
FrameworksImport or build cybersecurity frameworks and tailor them to your environment.
PoliciesDevelop, version and approve security policies and their controls.
ControlsManage every policy control from one consolidated view.
DemandsHandle risk assessment requests from draft to completion.
RisksThe risk registry: document, assess and follow every identified risk.
RemediationTrack the action plans that mitigate your risks.
Third PartiesInventory and assess your vendors and partners.
SystemsCatalogue your systems, their data and their dependencies.
FormsBuild and send forms to collect information internally or externally.
EvidencesStore and organise the evidence files and links behind your compliance programme.
DatabasesConfiguration catalogues plus the controls and threat databases used across the workspace.
SettingsConfigure the workspace: framing, users and roles, workflows, matrices, billing and more.

3. Everything lives in a workspace

All of the above happens inside a workspace: an isolated environment with its own data, members, roles and settings. You can own or join several workspaces and switch between them from the header. When you first sign up, CSFaaS even prepares a personal demo workspace, a fully populated example company you can explore and edit freely. The next pages of this section walk you through signing in, the interface and workspace management.

Tip: the left menu adapts to each workspace. Modules can be switched on or off in Settings, Framing, and entries you have no permission to read are hidden.