ComplianceAsCode / auditree-frameworkLinks
The Auditree framework tool to run compliance control checks as unit tests.
☆72Updated last year
Alternatives and similar repositories for auditree-framework
Users that are interested in auditree-framework are comparing it to the libraries listed below
Sorting:
- Open source tool for processing OSCAL based FedRAMP SSPs☆43Updated last year
- An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.☆218Updated this week
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆54Updated last week
- Tools for the OSCAL project☆36Updated 2 years ago
- Demo setup for compliance-trestle☆35Updated this week
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆45Updated 5 years ago
- The Auditree common fetchers, checks and harvest reports library.☆20Updated 2 years ago
- Compliance-to-Policy (C2P) provides the framework to bridge the gap between compliance and policy administration.☆34Updated 8 months ago
- NIST OSCAL SDK and CLI☆38Updated 5 years ago
- Utilities for programmatic analysis of Cartography data.☆39Updated this week
- Scripts to import OSCAL example content into the Neo4J graph database☆29Updated 2 years ago
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆21Updated 2 years ago
- DEPRECATED: A set of utilities for converting and working with compliance data for viewing in the heimdall applications☆35Updated 3 years ago
- ☆59Updated this week
- An open source, self-service GRC tool to automate security assessments and compliance.☆196Updated 11 months ago
- A library of React components and an example user interface application that provides a direct UI into NIST's Open Security Controls Asse…☆63Updated last year
- A library of data visualization dashboard templates that can be imported into JupiterOne.☆18Updated last week
- Various deployments of the OSCAL editor☆47Updated last year
- OWASP Foundation Web Respository☆57Updated 2 months ago
- NIST SP 800-53, Security and Privacy Controls for Federal Information Systems and Organizations☆40Updated last month
- in-toto is a framework to secure the software supply chain.☆71Updated this week
- YAML schema, examples, and validators for OpenControl format.☆75Updated 6 years ago
- Automate the creation of a System Security Plan (SSP)☆43Updated 5 months ago
- Heimdall Enterprise Server 2 lets you view, store, and compare automated security control scan results.☆240Updated last week
- A ComplianceAsCode blog☆29Updated last week
- ☁️Haven GRC - easier governance, risk, and compliance 👨⚕️👮♀️🦸♀️🕵️♀️👩🔬☆103Updated 4 years ago
- OSCAL SSP content for technologies shipped by Red Hat☆15Updated 2 years ago
- The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools…☆166Updated this week
- ☆114Updated 3 months ago
- A list of tools, blog posts, and other resources that further the use and adoption of OSCAL standards.☆190Updated 5 months ago