<img height="1" width="1" style="display: none" alt="" src="https://px.ads.linkedin.com/collect/?pid=1098858&amp;fmt=gif">

Compliance

Decode the rules of doing business. Read about the latest laws and regulations in your industry and find out how to follow them.

Get the latest from our Software Resilience Magazine

Join our newsletter for weekly insights on vendor risk, escrow trends, regulatory compliance updates, and cyber resilience shifts.

Subscribe Here!

By submitting your email, you consent to Codekeeper contacting you and agree to our privacy policy.
MORE Compliance
SBOM compliance: What CRA, NIS2, and DORA require
CRA, NIS2, and DORA each approach software component transparency differently. Here's exactly what each regulation requires — and how to satisfy all three.
Jul 6, 2026
A compliance officer perusing SBOM regulation requirements
DORA compliance: requirements, pillars, and how to meet them
Understand DORA compliance end to end: the five pillars, third-party obligations, penalties, and how to prove your exit strategy holds up.
Jul 6, 2026
A DORA compliance document on an auditor's desk
CRA compliance: What it means for a software product's life cycle
The CRA holds you responsible for a product's security from build to end-of-life. See who it affects, what it requires, and how to get compliance ready.
Jul 6, 2026
A CRA compliance overlay graphic
What is SOC 2? Criteria, reports, and types explained
A full SOC 2 breakdown across the five trust services criteria, Type 1 vs Type 2, what a report proves, and how it ties to vendor risk.
Jul 6, 2026
A SOC 2 auditor evaluating documentation
Navigating NIS2: What you need to know to stay compliant
Understand NIS2 compliance: who it applies to, the 10 Article 21 requirements, reporting timelines, penalties, and the steps to meet them before the deadline.
Jul 6, 2026
Two people conducting a NIS2 compliance review
A practical guide to ESMA compliance and software continuity
Find out what ESMA compliance means for software-dependent firms, how DORA changed it in 2025, and where your exit strategies fit in.
Jul 6, 2026
A regulator conducting an ESMA audit
ISO 27001 compliance: What it requires and how it affects your vendor management
A straightforward guide to ISO 27001 compliance, the supplier controls (A.5.19–A.5.30), and the continuity question auditors will ask you.
Jul 6, 2026
An ISO 27001 compliance officer conducting an audit
DORA Article 28 exit strategies: What financial entities need to build
DORA Article 28 wants you to put your exit strategies to the test. Find out what auditors will be looking for, and check how your own readiness holds up.
Jul 6, 2026
A team assessing their DORA exit plan
Stressed exit testing: What it is, what it proves, and how to run one
A vendor exit plan on paper means little until you've proven it can work. Take a look at the six things your stressed exit test must confirm before your next audit.
Jul 6, 2026
A massive mind map used to plan out an exit plan
ISO 27001 certification: Why it matters for your business
Learn why ISO 27001 certification is crucial for your business, how it enhances security, ensures compliance, and builds trust with clients and partners.
Aug 14, 2025
An IT specialist completing ISO 27001 certification training.
E-BOOK
Software Escrow 101
Learn how software escrow helps you mitigate software risk and build strong cyber resilience.

Download "Introduction to Software Escrow: A Guide" for free!

*E-book available only in English

Introduction to Software Escrow cover