About us

Compliance Labs helps vendors, organizations, and professionals find, compare, and evaluate cybersecurity software, backed by evidence they can each rely on.

25+ years of experience

Independent evaluations

Why Compliance Labs

Organizations of all sizes use software solutions to meet cybersecurity regulations and standards for critical business functions. But compliance itself remains an organizational outcome, not an outcome any single piece of software can deliver on its own. Evaluating whether a piece of software actually covers a given regulation, and where the gaps remain, takes time, expertise, and access to primary sources most teams don’t have.

Most information available on software vendors comes from marketing materials and analyst reviews, built to describe capabilities rather than document regulatory coverage. Compliance Labs takes a different approach: every capability is mapped to a specific regulatory source, with the relationship type and rationale documented. Buyers get evidence they can verify. Vendors get a structured way to prove what their software actually does, once, instead of answering the same question deal after deal. And professionals like CISOs, security architects, OT security managers, AI security specialists, consultants, auditors, and investors get a common reference point they can cite instead of rebuilding it themselves.

Compliance Labs_values-compliance-labs_picto

Our values

Compliance Labs_values-compliance-labs_picto4

Client-Centric Approach

Our clients are at the core of everything we do. We believe in building lasting partnerships, understanding their unique needs, and offering solutions that align with their specific compliance goals. Our client-centric approach ensures we deliver not only solutions, but evidence our clients can use to make decisions with confidence.

Compliance Labs_values-compliance-labs_picto2

Unwavering Expertise

At Compliance Labs, we pride ourselves on our deep expertise in regulatory compliance. Our team comprises seasoned professionals with extensive knowledge across diverse sectors, enabling us to navigate the complexities of regulatory mandates and anticipate the industry's evolving needs. This expertise is what lets our evaluations hold up to scrutiny.

Compliance Labs_values-compliance-labs_picto3

Comprehensive Guidance

Guidance is more than just offering advice; it's about providing a clear roadmap for success. At Compliance Labs, we are dedicated to supporting our clients every step of the way. From understanding their unique compliance challenges to recommending tailored solutions, our guidance is comprehensive, grounded in evidence rather than opinion.

The team

Abdelbaset Latreche,

Analyst & Founder

Abdelbaset brings 25 years of experience in IT/OT cybersecurity, compliance, and risk management, including 200+ application security evaluations and 150+ on-site OT audits across telecom, insurance, banking, energy, and transport infrastructure. He specializes in NERC CIP, NIST SP 800-82, NIST SP 800-53, PCI DSS, and NIST CSF assessments and remediation. Before founding Compliance Labs, he served as Head of Security Consulting at HP Enterprise Security Services, Security Consulting Practice Leader at IBM, and EMEA Practice Leader at Verizon.

In critical infrastructure, Abdelbaset assessed and implemented cybersecurity processes for Industrial Automation Control Systems (IACS) in line with ISA95 and NIST SP 800-82 standards. He established ICS frameworks for SAT/FAT cybersecurity testing, running over 100 acceptance tests across major industrial vendors, and developed risk management methodologies based on international standards.

In the financial and payment sectors, Abdelbaset developed methodologies for risk and fraud services, payment scheme risk management programs, and conducted assessments for merchants, acquirers, issuers, vendors, and service providers worldwide.

Abdelbaset holds a Master’s in Information Systems Management/Extended Enterprise from Paris-Dauphine University and certifications including GCIP, CISSP, and ISO 27001 Lead Auditor.

Jeso Sothilingam,

Contributing Analyst

Jeso is a seasoned professional with a diverse background in the tech industry. Currently serving as a Contributing Analyst at our organization, he brings extensive experience in IT/OT cybersecurity assessments and remediation.

Jeso’s academic foundation includes studies at Grenoble School of Management and ECE TECH. Holding a Master’s in IT and Digital Management and a Bachelor’s in Systems and Network Security Management, his educational credentials reflect his deep expertise and commitment to the field.

Didier Godart,

Contributing Analyst

Didier is a highly effective professional with 25 years of international experience in information security, auditing, risk management, compliance processes, business development, and project and program management. Dynamic, self-motivated, and results-oriented, he is both a team leader and team player with the ability to work autonomously and a proven track record of driving and delivering complex projects in large corporate environments through effective internal and external communication.

Didier brings his expertise and personal skills to organizations that foster a trusted atmosphere, aligning with his commitment to excellence.

Contact us today

We are here to help you find the right software solutions to grow your business and achieve your goals.

Select the fields to be shown. Others will be hidden. Drag and drop to rearrange the order.
  • Vendor
  • Category
  • CL Tier
  • Short description
  • Website
  • What it is
  • Best for
  • Does NOT do
  • CL verdict
  • Regulatory coverage
  • Frameworks tested
  • Capabilities
  • MITRE ATT&CK
  • Strengths
  • Cautions
  • Anti-hype claims
  • Operational metrics
  • Evidence pack
Compare
Compare ×
View comparison Continue browsing software