chughes757 / FederalZeroTrust
A repository of resources discussing the Public Sectors push for Zero Trust along with associated resources for learning on the topic.
☆39Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for FederalZeroTrust
- A collection of DoD and Federal Government Cloud Computing Resources☆48Updated 3 years ago
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrix☆58Updated last year
- Coalfire AWS RAMP/pak Reference Architecture☆36Updated 2 months ago
- This repository is a collection of resources to help facilitate compliance innovation utilizing Cloud, DevSecOps and Software Factory tec…☆66Updated last year
- ThreatModel for Azure Storage - Library of all the attack scenarios on Azure Storage, and how to mitigate them following a risk-based app…☆57Updated last year
- Multicloud workload identity workshop☆34Updated 8 months ago
- Cloud Analytics helps defenders detect attacks to their cloud infrastructure by developing behavioral analytics for cloud platforms as we…☆51Updated last year
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆43Updated 4 years ago
- A repository containing OSCAL serializations of the CIS Critical Security Controls☆48Updated last year
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.☆96Updated 11 months ago
- Automatically generated diagrams for OSCAL models☆16Updated 2 years ago
- A small set of scripts to summarize AWS Security Groups, and generate visualizations of the rules.☆62Updated 4 years ago
- An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.☆96Updated last month
- https://breaches.cloud☆36Updated last month
- Continuous Audit Metrics☆24Updated 5 months ago
- Rapidly apply hundreds of security controls in Azure☆183Updated last year
- ☆40Updated 5 months ago
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆53Updated 10 months ago
- ☆10Updated this week
- A docker container to simplify and secure the use of Infrastructure as Code (IaC)☆68Updated this week
- A guide to simplify the process of evaluating Datadog's Cloud SIEM security capabilities to detect AWS threats.☆17Updated last year
- Various deployments of the OSCAL editor☆47Updated 3 months ago
- This python app generates NIST 800 53 control implementation for each control and generate the CSV file.☆44Updated 11 months ago
- Systematic Universal Security Testing Orchestration☆37Updated 2 years ago
- A compliance analysis tool which enables organizations to more quickly articulate their compliance posture and also generate supporting e…☆35Updated this week
- Convert cloudtrail data to MITRE ATT&CK Sightings☆79Updated 2 years ago
- Docker build of GovReady☆13Updated last year
- Cloud deployment size calculation utilities☆17Updated 2 weeks ago
- ☆37Updated 10 months ago
- Compares and analyzes GCP IAM roles.☆76Updated 5 months ago