The Study Guide to CPCSC Readiness. Free to read online or download.
Read it free// COMPANION RESOURCES · THE STUDY GUIDE TO CPCSC READINESS
CPCSC templates and checklists
- 14 resources
- Sized for 12-to-45-computer shops
- Last verified: 2026-10-05
The working documents behind the book, sized for a small supplier and written to be edited rather than admired. Every template names the ITSP.10.171 requirements it helps satisfy, uses square brackets for the values you have to decide (the standard's organization-defined parameters, which you set, record in your system security plan, and defend), and fits on a page or two, because a 40-page policy nobody follows is a finding waiting to happen.
// START HERE
If you're at Level 1, take the Level 1 checklist and the password policy and stop. If Level 2 is ahead of you, the requirement index is your gap register spine and the rest fill in behind it in the order chapter 8 of the book walks them.
// 14 RESOURCES
Level 1 requirements and evidence checklist
the 13 requirements PSPC assesses, with the evidence each one reaches for
ITSP.10.171 requirement index
all 98 requirements as a checklist; the spine of a gap register or an evidence folder
Policy inventory checklist
the 14 policies a small shop needs on paper
Access control policy
role-based access, group hierarchy, and the review cadence
Password and authentication policy
one page, breach screening, MFA everywhere it counts
Incident response plan skeleton
with the contract reporting contacts built in
Shared responsibility matrix
who operates, who holds evidence, what arrives when
System security plan outline
the 9 sections an assessor expects
// USE AND REUSE
The templates are free to use, edit, and share, including by an MSP for a client, under CC BY 4.0. Keep the credit "Hans Study, hans.study" and the licence with every copy. Each downloaded file carries both. No template here is legal advice, and none is a substitute for the contract clauses in front of you.
References
- Protecting specified information in non-Government of Canada systems and organizations (ITSP.10.171)Canadian Centre for Cyber Securitycyber.gc.ca
- How to meet Level 1 requirementsPublic Services and Procurement Canadacanada.ca
Outbound links open in a new tab. Source-pinned. If a vendor moves a doc, this block gets updated.