carbonetes / brainiacLinks
BrainIAC uses static code analysis to analyze IAC code to detect security issues before deployment. This tool can scan for issues like security policy misconfigurations, insecure cloud-based services, and compliance issues.
☆71Updated last year
Alternatives and similar repositories for brainiac
Users that are interested in brainiac are comparing it to the libraries listed below
Sorting:
- Generates SBOMs for container images, filesystems, archives, and more to Discover packages and libraries Highly scalable data pipelines f…☆108Updated 3 months ago
- An OPA library to develop IT Control policies, for the IBM Cloud☆17Updated 3 years ago
- The SOCless automation framework☆140Updated 8 months ago
- Unit testing framework for test driven security of AWS, GCP, Heroku and more.☆108Updated last year
- Python library for examining, creating and optimising IAM policies☆22Updated 3 years ago
- Tool for generating least privileged policies in Terraform☆46Updated 5 years ago
- Create and destroy bastions on demand with Fargate.☆64Updated 3 years ago
- DevSecOps command line asset inventory tool☆30Updated 2 years ago
- A curated list of policy-as-code resources like blogs, videos, and tools to practice on for learning Policy-as-Code.☆197Updated last year
- Proof of Value Terraform Scripts to utilize Amazon Web Services (AWS) Security, Identity & Compliance Services to Support your AWS Accoun…☆16Updated 5 years ago
- Base infrastructure for future DevSecOps environment in AWS☆25Updated 4 years ago
- InSpec profile to validate your VPC to the standards of the CIS Amazon Web Services Foundations Benchmark☆77Updated last month
- Making CoreOS' Clair easily work in CI/CD pipelines☆29Updated 2 years ago
- Slack alert bot for matching Github Audit Events☆10Updated 11 months ago
- A Security Results Viewer for the web with storage, teams and history☆35Updated 2 years ago
- A silly project for free (maybe) egress from EC2 instances using Tailscale and Session Manager☆31Updated 2 years ago
- Rego policies for enterprise-scale Compliance-as-Code with OPA Conftest.☆59Updated 2 years ago
- A Golang program to rotate AWS & GCP account keys☆66Updated 5 months ago
- CloudSplaining on AWS Managed Policies☆44Updated last month
- Darkbit Cloud Security Tools☆25Updated 4 years ago
- PolicyGlass allows you to analyse one or more AWS policies' effective permissions in aggregate, by restating them in the form of PolicySh…☆60Updated 3 years ago
- Privateer is a plugin-based framework to validate the status of deployed resources.☆16Updated this week
- Concourse CI assets for Compliance Toolkit☆17Updated 8 years ago
- Offensive Terraform Website☆45Updated 5 years ago
- An AWS lambda function that grantsss S3 permissionsss at ssscale.☆14Updated 7 years ago
- ☆36Updated 6 years ago
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆54Updated last year
- Marking instances dirty since 2018☆47Updated 6 years ago
- OSCAL SSP content for technologies shipped by Red Hat☆15Updated 2 years ago
- Creates a CloudFormation stack for running Security Monkey☆27Updated 6 years ago