ComplianceAsCode / auditree-frameworkLinks
The Auditree framework tool to run compliance control checks as unit tests.
☆71Updated last year
Alternatives and similar repositories for auditree-framework
Users that are interested in auditree-framework are comparing it to the libraries listed below
Sorting:
- Open source tool for processing OSCAL based FedRAMP SSPs☆42Updated 11 months ago
- An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.☆205Updated this week
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆44Updated 5 years ago
- NIST OSCAL SDK and CLI☆38Updated 5 years ago
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆54Updated last year
- A library of React components and an example user interface application that provides a direct UI into NIST's Open Security Controls Asse…☆60Updated last year
- Demo setup for compliance-trestle☆35Updated this week
- Scripts to import OSCAL example content into the Neo4J graph database☆29Updated 2 years ago
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆21Updated 2 years ago
- The Auditree common fetchers, checks and harvest reports library.☆20Updated last year
- Automate the creation of a System Security Plan (SSP)☆39Updated 2 months ago
- ☁️Haven GRC - easier governance, risk, and compliance 👨⚕️👮♀️🦸♀️🕵️♀️👩🔬☆102Updated 4 years ago
- Tools for the OSCAL project☆36Updated 2 years ago
- An open source, self-service GRC tool to automate security assessments and compliance.☆194Updated 9 months ago
- Utilities for programmatic analysis of Cartography data.☆39Updated 2 weeks ago
- Various deployments of the OSCAL editor☆46Updated last year
- ☆57Updated 2 weeks ago
- in-toto is a framework to secure the software supply chain.☆71Updated 8 months ago
- A library of data visualization dashboard templates that can be imported into JupiterOne.☆18Updated last week
- A list of tools, blog posts, and other resources that further the use and adoption of OSCAL standards.☆176Updated 2 months ago
- Open Security Controls Assessment Language (OSCAL) Deep Differencing Tool☆37Updated 2 years ago
- Automated testing, generation & manipulation of #osquery packs☆73Updated 11 months ago
- The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools…☆162Updated this week
- NIST SP 800-53, Security and Privacy Controls for Federal Information Systems and Organizations☆40Updated last month
- A repository containing OSCAL serializations of the CIS Critical Security Controls☆55Updated 5 months ago
- OSCAL SSP content for technologies shipped by Red Hat☆15Updated 2 years ago
- GKE CIS 1.1.0 Benchmark InSpec Profile☆27Updated 4 years ago
- ☆114Updated last month
- vexctl is a tool to attest VEX impact statements☆45Updated 2 years ago
- Heimdall Enterprise Server 2 lets you view, store, and compare automated security control scan results.☆235Updated this week