top of page
POLICY TEMPLATES

Common policies to help lighten your compliance and operational burden

Access essential policy frameworks that explain what each policy does, why it matters, and how it protects your organization. Premium and Enterprise include a complete policy template library for creating consistent, organization-ready policies in minutes.

AI Governance and Oversight Policy

An AI Governance and Oversight Policy establishes the framework for how an organization evaluates, approves, deploys, monitors, and governs artificial intelligence systems throughout their lifecycle.

Anti-bribery and Corruption Policy

Is an organizational framework designed to prevent unethical practices like bribery, fraud, and embezzlement. It establishes strict rules, guidelines, and controls to ensure legal compliance, corporat

Code of Conduct (Basic)

A Code of Conduct defines the standards of workplace ethics, behavior, and integrity that guide your organization. It sets expectations for employees, leadership, and stakeholders—helping businesses f

Critical Vendor Concentration Risk Policy

A Critical Vendor Concentration Risk Policy defines how an organization identifies, evaluates, monitors, and governs dependencies on vendors whose failure or disruption could materially affect the bus

Cybersecurity Policy

A cybersecurity policy is a formal document that establishes guidelines, rules, and procedures for protecting an organization's digital infrastructure, data, and information systems from cyber threats

Data Privacy Policy

A data privacy policy defines how an organization collects, uses, stores, shares, and protects personal and sensitive data. It governs the rules and standards for handling data across systems, teams,

Diversity and Inclusion Policy

A diversity and inclusion policy defines how your organization fosters an equitable, respectful workplace while meeting compliance expectations.

Drug and Alcohol Policy

A Drug and Alcohol Policy helps set clear expectations around substance use while helping HR, compliance, and leadership teams proactively manage risk and uphold workplace standards.

Enterprise Risk Management (ERM) Governance Policy

An Enterprise Risk Management (ERM) Governance Policy establishes the framework, responsibilities, and processes used to identify, evaluate, prioritize, and manage organizational risks

Expense Reimbursement Policy

Guidelines for business expense reporting, approval, and reimbursement procedures.

GDPR Compliance Policy

A GDPR Compliance Policy defines how your organization handles personal data in alignment with EU privacy regulations.

IT Acceptable Use Policy

An IT Acceptable Use policy defines how employees and stakeholders can safely and responsibly use company technology. It’s essential for organizations that want to reduce risk, enforce IT usage standa

Insider Trading Policy (Basic)

An Insider Trading Policy defines how organizations prevent the misuse of material non-public information and ensure compliance with SEC insider trading regulations.

Non-disclosure Agreement and Confidential Information Policy

A Non-Disclosure Agreement and Confidential Information Policy defines how your organization protects sensitive information—internally and externally.

Password Management Policy

A Password Management Policy defines how your organization creates, stores, and protects credentials—one of the most critical layers of data security.

Quantum Computing Readiness Policy

A Quantum Computing Readiness Policy establishes an organization’s framework for identifying, assessing, governing, and reducing security risks created by advances in quantum computing.

Remote Work Policy

A Remote Work Policy defines how your organization supports work from home while maintaining security and productivity.

Sustainability Policy

A Sustainability Policy defines how your organization manages environmental impact, ethical sourcing, and corporate responsibility.

Travel and Entertainment Policy

A travel and entertainment policy ensures your organization manages business travel, client entertainment, and expense management with consistency and accountability. It provides clear business travel

Workplace Recording Policy

A Workplace Recording Policy defines when and under what circumstances employees may record workplace conversations, meetings, telephone or video calls, interviews, disciplinary proceedings, interacti

AI Usage Policy

An AI Usage Policy is a set of guidelines that defines how employees and systems within an organization can responsibly, safely, and legally use artificial intelligence tools and technologies.

Background Check Policy

A Background Check Policy establishes the standards, procedures, and requirements for conducting pre-employment and employment-related screening activities.

Conflict of Interest Policy

A Conflict of Interest policy ensures employees and stakeholders act in the best interest of the organization—not personal gain. It provides clear guidance on identifying, disclosing, and managing con

Cyber Extortion & Ransomware Decision Policy

A Cyber Extortion & Ransomware Decision Policy is a governance framework for how an organization evaluates and responds to ransom demands, data-extortion threats, and related cyber coercion.

Data Breach Response Policy

A Data Breach Response Policy defines how an organization detects, investigates, contains, and reports security incidents involving sensitive data.

Deepfake, Impersonation & Digital Identity Fraud Policy

A Deepfake, Impersonation & Digital Identity Fraud Policy establishes an organization’s rules and procedures for identifying, verifying, escalating, and responding to suspected digital impersonation a

Dress Code Policy

A Dress Code Policy is a set of rules established by an organization that outlines acceptable attire, grooming, and personal appearance for its environment. Its primary purpose is to maintain a profes

Employee Onboarding Policy

An Employee Onboarding Policy helps organizations create a consistent, compliant, and engaging experience for every new hire.

Equal Employment Opportunity Policy

An equal employment opportunity policy promotes fair and consistent workplace practices across hiring, promotion, and employee treatment. For organizations committed to diversity and inclusion, it’s a

Extreme Heat and Worker Protection Policy

An Extreme Heat and Worker Protection Policy establishes how an organization identifies, prevents, monitors, and responds to workplace heat hazards.

Harassment and Bullying Prevention Policy

An anti-harassment policy defines how organizations prevent, identify, and address inappropriate behavior—ensuring a respectful environment for all employees.

Information Classification Policy

An Information Classification Policy defines how an organization categorizes and shares data based on sensitivity, value, and risk.

Mobile Phone and BYOD Policy

A Mobile Phone and BYOD (Bring Your Own Device) Policy helps ensure confidentiality, protects trade secrets, and establishes clear guardrails for privacy and responsible device use.

Paid Time-Off (PTO) Policy

A Paid Time-Off (PTO) Policy establishes the rules, processes, and expectations surrounding employee time away from work. It typically governs vacation time, company holidays, personal leave, sick lea

Performance Management Policy

A Performance Management policy is a structured framework that guides goal setting, ongoing feedback, and formal evaluations to align employee work with company objectives. It establishes clear expect

Record Retention Policy

A Record Retention Policy defines how long your organization keeps documents and data, and how they are securely managed throughout their lifecycle.

Social Media Policy

A Social Media Policy is a formal set of guidelines that defines how employees and representatives of an organization should use social media—both on behalf of the company and in a personal capacity w

Third Party AI & Vendor Risk Policy

A Third-Party AI & Vendor Risk Policy establishes the standards an organization uses to evaluate, approve, monitor, and manage third-party AI providers throughout the vendor lifecycle.

Whistleblower Protection Policy

A whistleblower protection policy establishes a safe, structured way for employees and stakeholders to report concerns without fear of retaliation. For modern organizations, it’s essential for maintai

Workplace Violence Prevention Policy

A Workplace Violence Prevention policy defines how organizations proactively identify, prevent, and respond to threats in the workplace.

bottom of page