Industry-Agnostic by Design. Adaptable by Implementation.
CMP does not define what compliance means for a particular industry. It provides the management infrastructure through which each organization manages its own requirements, obligations, audits, and activities.
app.cmpmanager.com/templates
SiteHeadquartersTemplates LibraryShared across your account, with company-only templates where needed.
3Professional
Audit Templates Library
Browse platform templates or manage your own. Shared templates reach every company and site in your account, so the same checklist can be run everywhere and compared.
Context, leadership, planning, support, operation and improvement clauses.
8 sections64 questions
PreviewUse
Included
ISO 27001:2022 Information Security Audit
Security
ISMS clauses 4–10 with Annex A organisational and technological controls.
10 sections93 questions
PreviewUse
Included
ISO 45001:2018 Health & Safety Audit
Safety
Hazard identification, worker participation, incident and emergency controls.
9 sections71 questions
PreviewUse
Included
ISO 14001:2015 Environmental Audit
Environment
Environmental aspects, compliance obligations and operational controls.
7 sections58 questions
PreviewUse
Purchase
HACCP Food Safety Audit
Food Safety
Hazard analysis, critical control points, monitoring and verification.
7 sections52 questions
Preview$149
Included
GDPR Data Protection Audit
Privacy
Lawful basis, data subject rights, processors, breaches and records.
6 sections47 questions
PreviewUse
Purchased
EU GMP Manufacturing Audit
Pharma
Quality system, premises, documentation, production and quality control.
11 sections96 questions
PreviewUse
Purchase
Construction Site Safety Inspection
Safety
Permits to work, scaffolding, excavations, PPE and site housekeeping.
5 sections38 questions
Preview$99
Supported Industries
Ten Industries. One Compliance Platform.
Each industry carries its own mix of frameworks, regulations, and audit obligations. CMP provides the management infrastructure to keep all of them organized, evidenced, and accountable, in one place.
Technology & Digital
ISO 27001
SOC 2
GDPR
ISO 27701
NIST CSF
PCI DSS
CCPA
NIS2
and more…
Tech companies face overlapping security certifications, data privacy laws, and third-party audit requirements, often simultaneously across multiple jurisdictions. Evidence goes stale fast, control owners change, and auditors expect proof year-round.
How CMP makes it easier
Map controls once to satisfy ISO 27001, SOC 2, and NIST CSF simultaneously without duplicating work across frameworks
Collect and organize evidence continuously so cert renewal audits don’t require a last-minute scramble
Assign control owners with deadlines and track remediation through to closure with a verifiable audit trail
Log security incidents and link corrective actions to the affected controls, so nothing gets missed between reviews
Financial Services
Basel III/IV
AML / KYC
GDPR
SOX
PCI DSS
ISO 27001
DORA
MiFID II
FATF
and more…
Financial institutions manage a dense web of regulatory obligations across multiple regulators, jurisdictions, and internal audit programs, with regulators expecting documented evidence of control effectiveness, not just intent.
How CMP makes it easier
Centralize obligations from multiple regulators in one register, so nothing falls through the cracks between teams
Manage internal and external audit programs with findings, remediation actions, and evidence linked end-to-end
Maintain a verifiable evidence record for regulatory examinations, always ready, not assembled under pressure
Track regulatory changes as obligations evolve and assign responsibility for assessing impact on existing controls
Healthcare & Life Sciences
ISO 13485
ISO 9001
HIPAA
GxP
FDA 21 CFR Part 11
MDR / IVDR
Joint Commission
CE Marking
and more…
Healthcare and life sciences organizations face inspections from multiple authorities, strict corrective-action requirements, validated system controls, and training records that must be demonstrably current, all while keeping patient safety at the centre.
How CMP makes it easier
Manage corrective and preventive action end-to-end: from non-conformance capture through root cause, remediation, and verified closure
Maintain complete audit trails for regulatory inspections: every action, evidence item, and sign-off timestamped
Track change controls and link them to affected procedures, validated systems, and required re-validation activities
Store training records and competency evidence by role, always ready when an inspector asks who was trained on what
Manufacturing & Industrial
ISO 9001
ISO 45001
ISO 14001
IATF 16949
AS9100
ISO 50001
REACH
RoHS
and more…
Manufacturers run complex quality, safety, and environmental programs across multiple sites, shifts, and supplier networks. Incidents happen, non-conformances pile up, and supplier audits fall behind, especially when tracking is fragmented across systems.
How CMP makes it easier
Log health, safety and environment incidents and near-misses with structured investigation workflows: root cause, corrective action, and follow-up all in one place
Track non-conformances through to verified closure with evidence, so open findings never get lost between shifts or sites
Coordinate multi-site audit programs with schedules, checklists, findings, and actions managed from one platform
Maintain supplier qualification and periodic assessment records, so your supply chain compliance is documented, not assumed
Construction & Engineering
ISO 45001
ISO 9001
CDM Regulations
COSHH
RIDDOR
ISO 14001
ITPs
Contractual SLAs
and more…
Construction projects involve dozens of contractors, evolving site conditions, mandatory reporting, and inspection regimes across multiple concurrent projects, while safety incidents must be reported and investigated without delay.
How CMP makes it easier
Track site safety inspections, near-misses, and observations with owners and deadlines, with nothing left open without accountability
Maintain permit-to-work records, method statements, and risk assessments as live documents with version history
Coordinate contractor compliance across multiple sites, giving one view of who is qualified, who is overdue, and what needs follow-up
Run inspection and test plan audit programs with structured checklists, findings, and client-ready evidence packages
Energy & Natural Resources
ISO 14001
ISO 45001
ISO 50001
OSHA
EPA Regulations
API Standards
OSPAR / MARPOL
and more…
Energy companies operate under stringent environmental and safety regimes, licensing obligations, and major client compliance requirements, often across remote, multi-facility operations with thin on-site compliance staffing.
How CMP makes it easier
Maintain a permit and licence register with renewal dates, responsible owners, and linked compliance evidence
Manage health, safety and environment audit programs across multiple facilities with findings and corrective actions tracked to verified closure
Document incident investigations with full evidence trails, meeting regulatory reporting requirements and client audit expectations
Track major client compliance requirements with controls mapped and evidence maintained continuously
Retail & Consumer
GDPR / CCPA
PCI DSS
ISO 9001
REACH
Product Safety Act
Modern Slavery Act
FSSC 22000
ADA / DDA
and more…
Retailers manage consumer data privacy obligations, product compliance across diverse supplier bases, health and safety across store networks, and mounting sustainability reporting requirements, all while regulators tighten scrutiny on supply chain accountability.
How CMP makes it easier
Manage supplier compliance assessments and track open findings, so you know which suppliers meet your standards and which don’t
Maintain data protection accountability documentation: processing records, impact assessments, consent records, and breach response logs
Coordinate health and safety compliance across multiple store locations: inspections, incidents, and actions all in one view
Track product recall readiness and document corrective actions when product safety issues are identified
Logistics & Transportation
ISO 9001
ISO 45001
ADR / IATA DGR
C-TPAT
AEO
TAPA
DOT Regulations
Fleet Safety
and more…
Logistics providers operate under safety, customs, and cargo security frameworks with regulatory obligations that span vehicles, depots, drivers, and dangerous goods, across operations that run around the clock and across borders.
How CMP makes it easier
Manage driver, vehicle, and depot compliance records: certifications, inspections, and expiry dates tracked in one place
Log accidents, near-misses, and dangerous goods incidents with investigation workflows and regulatory reporting trails
Coordinate customs and cargo security control assessments: map requirements to controls, collect evidence, and maintain certification readiness
Track open action items across depots and operational teams, with every finding having an owner, a deadline, and a resolution trail
Hospitality & Travel
HACCP
ISO 22000
ISO 9001
GDPR / PCI DSS
ISO 45001
Liquor Licensing
Fire Safety
Food Hygiene Regs
and more…
Hotels, restaurants, and travel operators manage food safety audits, licensing renewals, guest data obligations, fire safety, and workplace safety across multiple properties, often with high staff turnover and no dedicated compliance function.
How CMP makes it easier
Manage food safety audit programs with structured checklists, findings, and corrective actions tracked to closure
Track licensing and certification renewal dates across all properties, with no more missed renewals or last-minute scrambles
Coordinate health and safety inspections and actions across properties, visible to management without requiring a manual report
Store staff hygiene and safety training records centrally, capturing evidence of who was trained, when, and on which procedure
Government & Public Sector
ISO 27001
ISO 9001
GDPR
NCSC Frameworks
Public Procurement Rules
FOI Act
Accessibility Regs
Internal Audit Standards
and more…
Public sector organizations are accountable to legislators, citizens, and oversight bodies, with internal audit programs, external inspections, procurement compliance, and data protection obligations that must be documented and defensible.
How CMP makes it easier
Manage internal audit programs with full schedules, findings, and remediation actions tracked through to verified closure
Track open action items from external inspections across departments, with every item having an owner, a deadline, and a documented response
Maintain a living evidence record of regulatory compliance, available for oversight body review without preparation time
Coordinate compliance across departments and agencies from one environment: shared visibility, individual accountability
Industry Hub Structure
Practical Compliance Knowledge, Not Just Marketing
Every industry page in the CMP resource library is structured to give organizations real, actionable compliance guidance, not generic positioning.
Industry Overview→
Compliance Challenges→
Frameworks & Regulations→
Best Practices→
Key Controls→
Audit & Certification→
How CMP Helps
Don't see your industry?
CMP's adaptable implementation model supports any compliance framework or set of organizational requirements. Talk to us about your specific context.