Skip to content

Products

Compliance Officer Service Expert-led compliance, end to end Compliance Portal Share security documents securely Open-source platform Deploy Probo on your own infrastructure

Resources

Probo stories How teams get compliant with Probo Blog Ideas and guidance from the Probo team Guides & tools Practical compliance guides and free tools Love from Customers What customers say about working with Probo Changelog Latest product updates Download Get the Probo Agent

Company

About The people and vision powering Probo Careers Join the team building Probo Brand assets Official logos and visual resources Security Review our security and compliance posture
Overview Understand Probo and its core concepts Product Explore Probo's GRC capabilities Developers Explore GraphQL, CLI, MCP, n8n, and webhooks Deployment Probo Cloud, self-hosting, and configuration

Explore

GitHub Explore our open-source compliance tools

Set Up Your First Organization and Framework

Create your Probo workspace, invite your team, and begin your first compliance framework

View as Markdown

Once you can sign in to Probo, create the workspace that will hold your compliance program and select the first framework your team wants to manage.

You need:

  • Access to a Probo Cloud or self-hosted instance
  • Permission to create or administer an organization
  • A compliance framework your organization plans to follow
  • The names of the teammates who will help own the program

If you do not have a running instance yet, choose a deployment.

  1. Create an organization

    After signing in, create an organization for the company or business unit whose compliance program you want to manage. Compliance data, members, frameworks, risks, third parties, documents, and audits belong to this organization.

  2. Add the people responsible for the program

    Invite the teammates who will administer Probo or own compliance work. Start with a small group that includes a compliance lead and the engineering or security leaders responsible for implementing controls.

    You can configure SAML single sign-on and SCIM provisioning when you are ready to centralize access.

  3. Choose your first framework

    Select the standard or regulation driving your immediate goal—for example, SOC 2, ISO 27001, or GDPR. Starting with one framework makes it easier to establish ownership and evidence-collection habits before expanding the program.

  4. Import the framework

    Open the frameworks area in Probo and import the framework you selected. Review its controls to understand the requirements now tracked in your organization.

  5. Review controls and define measures

    A control describes what must be achieved. A measure records the process, safeguard, or recurring activity your organization operates to satisfy one or more controls. Link existing measures where they already meet a requirement instead of duplicating work.

  6. Assign owners and initial tasks

    Give measures and follow-up work clear owners. Prioritize gaps that block your certification or compliance target, then record due dates and the evidence each owner should provide.

  7. Add your first evidence

    Attach a document, record, screenshot, export, or other artifact that demonstrates a measure is operating. Evidence should be current, attributable, and specific enough for a reviewer to understand what it proves.

  • Record the risks that matter most to the organization and link their mitigations.
  • Inventory critical vendors and begin third-party assessments.
  • Import or write policies, then assign review and approval work.
  • Establish a recurring cadence for evidence collection and control review.
  • Add other frameworks when the first program has clear owners and processes.