Skip to content
DIY Toolkits by databrackets

A DIY Toolkit is ideal when your team already understands the security framework your compliance journey requires. You know what’s expected, you know your environment, and you’re ready to prove it. All you need is a structured, systematic way to document your controls and evidence. That’s exactly what the databrackets DIY Toolkit delivers.

Compliance isn’t just about checking boxes, it’s about proof. Clients, auditors, and partners need documented evidence that your security posture is real and defensible.

Our DIY Toolkits are built for self-assessment, meaning your team responds to every control question and uploads supporting evidence directly. Once complete, your Sharable Assessment Profile can be presented to any external Assessor, Auditor, or stakeholder with confidence. One missed control can cost you a contract, a fine, or your reputation. Getting your documentation right, and shareable, is your strongest defense.

Every DIY Toolkit includes everything your team needs to go from assessment to action. You’ll receive a standard-specific Assessment Report and ready-to-use Policies & Procedures Templates. Form Templates and a Remediation Tracking & Action Plan keep your documentation organized and on schedule. An Onboarding Video gets your team started quickly and confidently. Where workforce compliance is required, standard-specific Security Awareness Training is available as an add-on, covering HIPAA, GDPR, NIST 800-171, and more. To purchase training, reach out directly to sales@databrackets.com. Optional Penetration Testing & Vulnerability Scanning is also available to strengthen your technical validation.

Our DIY Toolkits are the right fit for organizations that meet the following criteria. Your IT team has hands-on experience completing self-assessments for the relevant standard. Your team understands what evidence is required to satisfy each control. You have the internal bandwidth to manage, document, and organize your compliance process. If your team is newer to self-assessments or unsure what evidence is required, a guided approach may serve you better. Hybrid services are available for organizations that want expert oversight alongside the DIY structure.

All of this is delivered through dbACE, databrackets’ secure, web-based compliance and audit management platform. No software to install, just log in and get to work immediately. Your team can manage workflows, assign tasks, and track remediation progress in one place. A central Document Center keeps all evidence, policies, and templates organized and audit-ready. AI-powered capabilities help your team draft responses and action plans faster and more consistently. Your Sharable Assessment Profile is always ready to present to clients, auditors, or partners in real time. For experienced teams, our DIY Toolkits on dbACE turns your knowledge into compliance!

Our DIY Toolkits

HIPAA

Protect your PHI & Medical Records & prove it with our DIY Toolkit!

Learn More

MIPS

Leverage our DIY toolkit to complete the risk assessment and meet the MIPS/MACRA requirements.

Learn More

CIS Azure Foundations V5.0

Secure your Azure Environment and prove it with our DIY Toolkit!

Learn More

CIS Controls (V 8.1)

Prove your compliance with CIS Controls & Benchmarks Version 8.1

Learn More

SOC 2 Readiness

Organize your evidence & documentation for your SOC 2 Examination with our DIY Toolkit!

Learn More

NIST CSF

Prove your compliance with risk management processes outlined in NIST Cybersecurity Framework (NIST CSF).

Learn More

OSHA for Healthcare

Meet OSHA regulatory requirements for Healthcare and prove you are compliant with our DIY Toolkit.

Learn More

NIST SP 800-53

Prove your compliance with risk management processes outlined in NIST SP 800-53.

Learn More

NIST SP 800-171 (Non - CUI Only)

Prove your compliance with Non-CUI parameters outlined in NIST SP 800-171.

Learn More

GDPR

Prove you are compliant with data privacy laws in EU.

Learn More

Security Risk Assessment

Organize your documentation and prove your security controls are operational.

Learn More

HIPAA Security Risk Assessment

Use our DIY HIPAA Security Risk Assessment to share you are compliant.

Learn More

21 CFR Part 11 (FDA)

Prove you are compliant with data management laws for FDA regulated industries.

Learn More

NYDFS

Prove your compliance with 23 NYCRR 500 and NYDFS rules for financial institutions in New York.

Learn More

Vendor Risk Assessment

Use our DIY Toolkit to assess if your Vendor / Third-party is compliant with risk management processes. 

Learn More

FTC Safeguards Rule

Prove you are compliant with the FTC Safeguards Rule. 

Learn More

HECVAT

Prove your compliance with Higher Education Community Vendor Assessment Toolkit (HECVAT).

Learn More

OWASP Top 10

Use our DIY Toolkit to assess your compliance with OWASP Top 10.

Learn More

PIPEDA

Prove you are compliant with Canadian Data Privacy regulations outlined under PIPEDA.

Learn More

SOC 1

Prove your compliance with SOC 1 security controls for your industry, organize your evidence and documentation for your SOC 1 Auditor.

Learn More

CIS AWS Benchmarks

Secure your AWS environment and prove it with our DIY Toolkit.

Learn More

ITAR

Prove you are compliant with ITAR for Defence Contracts.

Learn More

CCPA

Prove you are compliant with California’s Data Privacy regulations outlined under CCPA.

Learn More

CIS Google Benchmarks

Secure your GCP environment and prove it with our DIY Toolkit.

Learn More

FERPA

Prove you are protecting student records in the US and in compliance with rules outlined under FERPA.

Learn More

PDPA (Thailand)

Prove that you are protecting the personal information of all individuals in Thailand outlined under the Personal Data Protection Act (PDPA).

Learn More

SAMA Cybersecurity Framework

Prove that you are protecting financial information and complying with cybersecurity rules and regulations by the Saudi Arabian Monetary Authority.

Learn More

CIS Microsoft 365 Foundations

Secure your Microsoft 365 environment and prove it with our DIY Toolkit.

Learn More

CAIQ

Assess the security capabilities of your cloud security provider with our DIY Toolkit.

Learn More

PCI DSS

Prove that you are protecting financial information and have reduced the theft of a data breach with our DIY Toolkit. 

Learn More

NIST AI Risk Management Framework

Use our DIY Toolkit to organize your documentation and prove that you are compliant with the NIST AI Risk Management Framework.

Learn More

GLBA

Use our DIY Toolkit to prove that you are protecting the security & confidentiality of your customer’s nonpublic personal information as outlined under GLBA.

Learn More

Staff Training

Add our online staff training modules to your DIY Toolkits. Select from a variety of standard-specific and general security awareness & phishing awareness trainings.

Learn More

Trusted by Reputed Companies

pVerify, Inc.
Electronic Data Solutions
Bernard Robinson & Company
Avance Care
iCliniq
Botsplash
Logically
Mr.Internet Systems
Vision Radiology
Tangible Solutions
Tangible Solutions
WorkSmart
Triyam
Med First Primary and Urgent Care
Arizona State Radiology
DataCaliper
Dose Spot Company Logo
DoseSpot
Forsyte I.T. Solutions
Tego Data

Accreditations and Associations

* Disclaimer: This list of accreditations is held by our team of employees and consultants.

What Our Clients Say

We used databrackets (formerly EHR 2.0) in our small medical practice for our risk analysis assessment to be in compliance with meaningful use. Their response was fast, the final report is detailed but simple and easy to follow. They were always available to answer our questions.
E. Compres
Pulmonary and Sleep Center of the Valley
I never miss the opportunity to learn something new …that’s why I am always registering to all free seminars offered on the web. databrackets (formerly EHR 2.0) happened to be the friendliest, comprehensive and up-to- date source of HIPAA Privacy and Security updates.
Alexandra V.
Community Healthcare Network
Today’s presentation was great! Thank you for sending the slides. My only feedback is that it would be fabulous to have the slides ahead of time so I could print them and take notes on the slides.Thanks for your time and knowledge today!
T.B., PM
Community Health Network
Particularly interesting was the flow chart on Administrative Simplification. I utilize all of the Security subcategories you list under the Security tile and appreciate knowing that I am hitting all of the relevant topics during my employee training.
Jessica B.
JD, CHC
I have re-worked our original risk assessment….We are using databrackets' (formerly EHR 2.0) Meaningful Use Security Risk Analysis Toolkit and it meets our needs. It was easy to use and I believe that it very beneficial to our meeting meaningful use.
Bill Curtis
Neurosurgical Associates Of Texarkana, TX
Information (webinars) presented by databrackets (formerly EHR 2.0) highlights some of today’s most demanding healthcare topics. The webinars help to direct those operating in today’s rapidly changing environment in the right direction.
Candace M.
Privacy and Security Officer, Springhill Medical Center

Our Growing List of Credentials

0 +
Assessments
0 +
Clients
0 +
Assessment Libraries
0 +
Years of Experience
0 +
No. of Staff Trained
0 +
HIPAA
0 +
SOC 2 Readiness
0 +
Pen Testing
0 +
ISO 27001 Certifications
0 +
Dollars Saved in Compliance Penalties