Rhosys / soc2.fyiLinks
SOC 2 should be easy to get done and it should be inexpensive. Here's everything you wanted to know.
☆50Updated 2 months ago
Alternatives and similar repositories for soc2.fyi
Users that are interested in soc2.fyi are comparing it to the libraries listed below
Sorting:
- CLI for generating policies, standards and control procedures (PSP) documentation in Markdown and publishing to JupiterOne or Confluence☆88Updated 2 weeks ago
- Documenting SOC 2 tools and processes☆99Updated 4 years ago
- A set of policies, standards and control procedures with mapping to HIPAA, NIST CSF, PCI DSS, SOC2, FedRAMP, CIS Controls, and more.☆340Updated 2 months ago
- Template SOC2 Policy Authority - documentation pipeline☆138Updated 5 years ago
- Minimum Viable Secure Product mvsp.dev☆204Updated last year
- A Software as a Service (SaaS) log collection framework.☆182Updated 3 weeks ago
- Lambda function that streamlines containment of an AWS account compromise☆344Updated 2 years ago
- A list of cloud security tools and vendors.☆184Updated last year
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆179Updated 2 months ago
- The SOCless automation framework☆140Updated last year
- Documenting your Threat Models with HCL☆453Updated this week
- Security compliance platform - SOC2, CMMC, ASVS, ISO27001, HIPAA, NIST CSF, NIST 800-53, CSC CIS 18, PCI DSS, SSF tracking☆641Updated 7 months ago
- A list of tools, blog posts, and other resources that further the use and adoption of OSCAL standards.☆205Updated 7 months ago
- A minimalist risk management program!☆151Updated 3 years ago
- Security policies for Tailscale☆310Updated 3 weeks ago
- AWS honey token manager☆89Updated last year
- OCSF Documentation☆153Updated 2 weeks ago
- ☆115Updated 6 months ago
- An open source, self-service GRC tool to automate security assessments and compliance.☆204Updated last year
- NIST SP 800-53, Security and Privacy Controls for Federal Information Systems and Organizations☆40Updated 3 months ago
- A Cloud Security Posture Manager or CSPM with a focus on security analysis for the modern cloud stack and a focus on the emerging threat …☆196Updated last year
- Compares and analyzes GCP IAM roles.☆78Updated 11 months ago
- A repository containing OSCAL serializations of the CIS Critical Security Controls☆60Updated 10 months ago
- An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.☆117Updated last week
- ☆124Updated 8 months ago
- ☆228Updated 2 weeks ago
- Supply-Chain Firewall (SCFW) is a tool for preventing the installation of malicious npm and PyPI packages☆215Updated this week
- ☁️Haven GRC - easier governance, risk, and compliance 👨⚕️👮♀️🦸♀️🕵️♀️👩🔬☆103Updated 4 years ago
- Utilities for programmatic analysis of Cartography data.☆40Updated last week
- Coalfire AWS RAMP/pak Reference Architecture☆37Updated last year