> ## Documentation Index
> Fetch the complete documentation index at: https://docs.cyberopsource.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Cyber Op Source Documentation

> Learn how to use Compliance OS for assessments, interviews, remediation, evidence, and security program governance.

# Compliance OS

Compliance OS is the coordinated client experience used by Cyber Op Source to support cybersecurity and compliance engagements from information gathering through remediation and executive governance.

It brings together the workflows clients need without exposing unrestricted internal assessment records. Access is controlled by client, engagement, role, and application authorization.

<CardGroup cols={2}>
  <Card title="Client Portal" href="/compliance-os/client-portal">
    Your front door to authorized Compliance OS applications, current tasks, useful metrics, and recent activity.
  </Card>

  <Card title="Interview Application" href="/compliance-os/interview-application">
    Participate in guided stakeholder interviews that collect engagement-specific knowledge and supporting context.
  </Card>

  <Card title="Remediation Workspace" href="/compliance-os/remediation-workspace">
    Review published findings, collaborate on treatments, provide evidence, and track remediation progress.
  </Card>

  <Card title="Security Program Hub" href="/compliance-os/security-program-hub">
    A leadership and governance experience for authorized executives and client administrators.
  </Card>
</CardGroup>

## Start here

If this is your first time using Compliance OS, begin with [Signing in](/getting-started/signing-in), then review [Roles & Access](/getting-started/roles-access). Your available applications and actions may differ from another user at the same organization because access is intentionally scoped.

<CardGroup cols={3}>
  <Card title="Getting Started" href="/getting-started/signing-in">
    Sign in, understand your Client Portal, and learn how application access works.
  </Card>

  <Card title="User Guides" href="/user-guides/conducting-interviews">
    Step-by-step guidance for interviews, findings, treatments, evidence, plans, and governance.
  </Card>

  <Card title="Security & Trust" href="/security-and-trust/authentication-sso">
    Learn how authentication, client isolation, data handling, AI use, and human oversight are approached.
  </Card>
</CardGroup>

## How Compliance OS fits an engagement

A typical engagement moves through several coordinated stages:

1. **Access and onboarding** — authorized users sign in through their client-specific entry point.
2. **Information gathering** — participants may complete guided interviews and provide engagement context.
3. **Assessment and publication** — Cyber Op Source performs assessment work internally and publishes client-safe information when it is ready for client use.
4. **Remediation collaboration** — clients review findings, work with treatments, provide evidence, and complete assigned actions.
5. **Leadership governance** — authorized leaders use the Security Program Hub for published program information, risk visibility, roadmap progress, and governance decisions.

<Note>
  Not every client or user receives every application. Compliance OS intentionally presents only the applications and information authorized for your organization, engagement, and role.
</Note>

## Documentation scope

These pages focus on the client experience. They explain what you can do in Compliance OS and the security principles that shape the platform. Internal Cyber Op Source administrative procedures, unrestricted assessment data, infrastructure secrets, and sensitive implementation details are not part of the public help center.

For questions specific to your engagement, contact your Cyber Op Source engagement lead.
