IBM / asoc-devops-toolingLinks
This project will provide DevOps automation in the form of snippets, sample apps, and plugins in support of integrating with IBM Application Security on Cloud for automated security scans of software projects using popular tools and frameworks across the DevOps landscape.
☆12Updated 4 months ago
Alternatives and similar repositories for asoc-devops-tooling
Users that are interested in asoc-devops-tooling are comparing it to the libraries listed below
Sorting:
- Container Security Verification Standard☆58Updated 6 years ago
- dockscan is security vulnerability and audit scanner for Docker installations☆219Updated 9 years ago
- A command line security audit tool for Amazon Web Services☆82Updated 6 years ago
- Mixeway is security orchestrator for vulnerability scanners which enable easy plug in integration with CICD pipelines. MixewayHub project…☆110Updated last year
- An enterprise friendly way of detecting and preventing secrets in code.☆83Updated 4 months ago
- SEDATED® Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure)☆112Updated last year
- Repo to hold mapping of user-security-stories☆120Updated 7 years ago
- ☆108Updated 2 years ago
- Microsoft Threat Modeling Template files☆200Updated 3 years ago
- The clever vulnerability dependency finder☆96Updated 3 years ago
- Linux, macOS and Windows Install scripts for cnquery & cnspec☆83Updated this week
- Making CoreOS' Clair easily work in CI/CD pipelines☆29Updated 2 years ago
- Project intended to make Attack Maps part of software development by reducing the time it takes to complete them.☆47Updated 9 years ago
- The Auditree framework tool to run compliance control checks as unit tests.☆71Updated last year
- Reapsaw is a continuous security devsecops tool, which helps in enabling security into CI/CD Pipeline. It supports coverage for multiple …☆41Updated 5 years ago
- A repository for wardley maps related to security topics.☆46Updated 8 years ago
- CI Pipeline with Pixi, the WAF OWASP Core Rule Set and TestCafe tests.☆15Updated 4 years ago
- The original AWS security enforcer™☆61Updated 6 years ago
- An open-source JAXB data model for SCAP specification formats.☆58Updated 3 years ago
- 'Continuous' AWS perimeter monitoring: Periodically scan internet facing AWS resources to detect misconfigured services.☆64Updated 6 years ago
- A Java library for parsing and programmatically using threat models☆82Updated 2 years ago
- OWASP SonarQube Project☆112Updated 6 years ago
- OSCAL SSP content for technologies shipped by Red Hat☆16Updated 2 years ago
- ChaoSlingr: Introducing Security into Chaos Testing☆69Updated 6 years ago
- DevSecOps Toolchain☆112Updated 8 years ago
- scan s3 buckets for security issues☆86Updated last year
- Integrates OWASP Zed Attack Proxy reports into SonarQube☆73Updated 6 months ago
- A simple Java command-line utility to mirror the entire contents of VulnDB.☆48Updated 6 months ago
- INTERCEPT / Policy as Code Auditing☆85Updated last month
- Deprecated; please use fcli instead☆27Updated 5 months ago