AuditDrift

AuditDrift is a web app (with optional lightweight desktop agent) that continuously checks whether your real environment still matches your compliance evidence. Instead of generating another policy binder, it monitors “audit drift” across cloud configs, IAM permissions, endpoint posture, and key SaaS settings, then maps findings to common controls (SOC 2, ISO 27001, HIPAA). The product focuses on the boring but painful gap: teams pass an audit, then slowly regress until the next one. It pulls signals from AWS Config, Azure Policy, Okta, Google Workspace, and MDM/EDR exports, and produces a simple control-by-control status with proof links and change history. An AI assistant helps summarize what changed, who changed it, and what evidence is now missing, but the core value is deterministic checks and traceable logs. Expect a narrow initial scope; broad coverage takes time.

← Back to idea list