ComplianceAsCode / auditree-frameworkLinks
The Auditree framework tool to run compliance control checks as unit tests.
☆71Updated last year
Alternatives and similar repositories for auditree-framework
Users that are interested in auditree-framework are comparing it to the libraries listed below
Sorting:
- Open source tool for processing OSCAL based FedRAMP SSPs☆43Updated 11 months ago
- An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.☆207Updated this week
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆44Updated 5 years ago
- NIST OSCAL SDK and CLI☆38Updated 5 years ago
- The Auditree common fetchers, checks and harvest reports library.☆20Updated last year
- Demo setup for compliance-trestle☆35Updated 3 weeks ago
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆54Updated last year
- Utilities for programmatic analysis of Cartography data.☆40Updated last week
- A library of React components and an example user interface application that provides a direct UI into NIST's Open Security Controls Asse…☆61Updated last year
- ☁️Haven GRC - easier governance, risk, and compliance 👨⚕️👮♀️🦸♀️🕵️♀️👩🔬☆103Updated 4 years ago
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆21Updated 2 years ago
- YAML schema, examples, and validators for OpenControl format.☆75Updated 6 years ago
- Automate the creation of a System Security Plan (SSP)☆41Updated 3 months ago
- OWASP Foundation Web Respository☆56Updated this week
- Various deployments of the OSCAL editor☆46Updated last year
- Scripts to import OSCAL example content into the Neo4J graph database☆29Updated 2 years ago
- Tools for the OSCAL project☆36Updated 2 years ago
- A list of tools, blog posts, and other resources that further the use and adoption of OSCAL standards.☆184Updated 3 months ago
- NIST SP 800-53, Security and Privacy Controls for Federal Information Systems and Organizations☆40Updated 2 months ago
- Heimdall Enterprise Server 2 lets you view, store, and compare automated security control scan results.☆237Updated this week
- An open source, self-service GRC tool to automate security assessments and compliance.☆194Updated 9 months ago
- ☆114Updated last month
- DEPRECATED: A set of utilities for converting and working with compliance data for viewing in the heimdall applications☆35Updated 3 years ago
- in-toto is a framework to secure the software supply chain.☆71Updated 8 months ago
- A collection of DoD and Federal Government Cloud Computing Resources☆48Updated 4 years ago
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Updated 2 years ago
- OpenControl-formatted industry standards and requirement documents☆47Updated 2 years ago
- OSCAL SSP content for technologies shipped by Red Hat☆15Updated 2 years ago
- vexctl is a tool to attest VEX impact statements☆45Updated 2 years ago
- A library of data visualization dashboard templates that can be imported into JupiterOne.☆18Updated 3 weeks ago