# Compliance Overview | Secureframe

> Find out what steps a company needs to take to meet standards and regulations to run safely and legally.

canonical: https://secureframe.com/hub/grc/auditing

Compliance is a crucial part of GRC. Without taking the steps to meet standards and regulations to run safely and legally, your organization faces hefty fines and legal penalties. 

For example, in 2023, Meta was fined €1.2 billion by Ireland's Data Protection Commissioner (DPC) for violating GDPR data transfer restrictions. It is the largest fine imposed by a European data protection authority since GDPR came into effect in 2018.

In addition to fines and penalties, organizations risk losing customers, losing revenue, and even getting shut down when they violate industry laws, regulations, and standards. 

To help you avoid [compliance risk](https://secureframe.com/blog/compliance-risk), we’ll cover the fundamentals of security compliance, including common frameworks, the internal audit process, and tips for choosing an auditor.
