How many frameworks does Blaise support?
Blaise has 100+ frameworks cross-mapped through the SCF crosswalk. That means you can answer one assessment and reuse overlapping controls and evidence across many framework obligations.
FAQ
The real questions buyers ask about Blaise: what frameworks are mapped, what integrates, how evidence works, how AI is governed, and where MSPs and direct teams fit.
Resources
Run a better program
Playbooks for advisory leaders
Guide
The 6-step operating loop
Template
Board-ready QBR structure
Field note
Answer once, prove many
Buyer questions
Ground rules
Blaise prepares and evidences programs. Certifying bodies issue certifications. HITRUST is not currently in the crosswalk. AI is opt-in and on-demand.
100+
frameworks cross-mapped
18+
live evidence collectors
50+
connector-framework lanes
Frameworks & compliance
Blaise has 100+ frameworks cross-mapped through the SCF crosswalk. That means you can answer one assessment and reuse overlapping controls and evidence across many framework obligations.
No. Blaise prepares and evidences your audit work: collecting evidence, mapping controls, tracking readiness, and building auditor packages. The certifying body or auditor issues the certificate.
Not currently. HITRUST is not in our crosswalk today. Blaise covers SOC 2, ISO 27001, HIPAA, PCI, NIST CSF, NIST 800-53, NIST 800-171, CMMC, and 100+ more frameworks.
Integrations
Blaise has 18+ live evidence collectors across Microsoft 365 and Entra, Microsoft Defender, CrowdStrike, Intune, Jamf Pro, Okta, Google Workspace, AWS, Google Cloud, GitHub, GitLab, Jira, Veeam, Tenable, ConnectSecure, and Microsoft Purview — on a connector framework spanning 50+ vendor lanes in total.
Blaise uses a connector framework for additional systems, and manual or document evidence upload covers the rest. You can still map evidence to controls, keep it reviewable, and include it in audit and executive reporting workflows.
How it works
No. Blaise connectors auto-collect evidence where integrations are enabled, and controls continuously re-grade from live signals instead of relying on recurring screenshot work.
Drop a PDF and Blaise AI extracts findings, maps them to controls, and auto-files the result as reviewable evidence. Drag-and-drop supports PDF and .txt today; other text can be pasted.
AI is opt-in and on-demand; we don't train models on your data.
MSP & pricing
Both. MSPs, MSSPs, vCIO/vCISO firms, and consultants can use Blaise with fleet views and per-client billing. Direct teams can use Blaise as a single-organization operating platform for internal CIO, CISO, GRC, risk, vendor, and reporting workflows.
The pricing page has the current packaging details for MSPs, MSSPs, consultants, and direct organizations.
See how Blaise turns posture, risk, evidence, vendors, roadmap, and decisions into a board-ready operating rhythm.