About ComplianceDocs

ComplianceDocs publishes editable compliance policy documentation — ISO 27001, SOC 2, HIPAA, GDPR, NIST CSF, ISO 42001 and FTC-Safeguards WISP material — as instant Word and Excel downloads. It is a brand of ExpertEngine LLC, and it has sold directly from this site since June 2026. The catalog runs from single policy documents to complete framework toolkits.

Who runs ComplianceDocs

Dor Israel, Founder of ComplianceDocs

Dor Israel is the Founder of ExpertEngine LLC, the company behind ComplianceDocs, and is accountable for what gets published here — the toolkits, the guides, and the editorial standard described below. Before founding ComplianceDocs, Dor spent close to a decade in compliance, audit and advisory work at one of the Big Four firms.

That background is why these documents are written the way they are. Small organizations rarely run into trouble because a policy was badly worded; they run into trouble because nobody operated the policy. The same byline appears on articles written for outside publications, so the work can be checked against the person who signed it. Corrections, questions and press enquiries reach the founder directly at support@compliancedocshq.com, or via LinkedIn.

How the documents are written

Our documents are drafted with AI assistance under a structured editorial process, then reviewed against the relevant framework for accuracy — control numbering, clause references and current requirements — before publication. We state that plainly because the alternative, implying a lawyer hand-wrote every clause, would not be true. What you buy is a professional starting point built to be tailored to your organization, not a finished program and not a substitute for your own judgment or your advisor's review.

What we don't claim

Buying documentation does not make an organization compliant, and nothing sold here is a certification. Compliance comes from operating the program the documents describe. A certificate or attestation is issued only by an independent body that examines your live program — ISO 27001 certification by an accredited certification body, a SOC 2 report by a licensed CPA firm. We would rather say so on our own about page than let a buyer find out later.

ComplianceDocs is an independent product of ExpertEngine LLC d/b/a ComplianceDocs. It is not affiliated with, endorsed by, sponsored by, or certified by ISO, the IEC, the AICPA, HHS, NIST, the FTC, or any other standards body, regulator or audit firm. Framework names are used descriptively, to say which standard a document is built for. The full position is in our legal disclaimer.

What we publish

Alongside the paid catalog we keep a deliberately large free layer, because the fastest way to judge documentation is to read some of it. That includes framework guides, plain-English glossary entries, side-by-side framework comparisons, working templates and starter checklists, a free documentation calculator, and articles in Learn that cover what a framework actually requires rather than what would be convenient for us to sell.

Where to find us

Support and everything else: support@compliancedocshq.com. The company also posts on LinkedIn, and the same catalog is listed on Etsy for buyers who prefer to check out there.

Professional editable templates — general information only, not legal, audit, tax, or certification advice, and no professional or advisory relationship is created. No purchase makes an organization compliant or certified. Review each document with qualified counsel, your compliance professional, or your auditor before relying on it. ISO, IEC, SOC 2, AICPA, HIPAA, NIST, GDPR, the EU AI Act, IRS and FTC are referenced descriptively only; ComplianceDocs (ExpertEngine LLC) is independent and is not affiliated with, endorsed by, or certified by any standards body, regulator, or audit firm.