☆49Feb 22, 2023Updated 3 years ago
Alternatives and similar repositories for security-controls
Users that are interested in security-controls are comparing it to the libraries listed below
Sorting:
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆48Feb 5, 2020Updated 6 years ago
- The Enhanced MITRE ATT&CK® Coverage Tracker is an Excel tool for SOCs to measure and improve detection coverage of cyber threats. It simp…☆34Nov 13, 2025Updated 3 months ago
- Threat Feeds, Threat lists, and regular lists of known IP ranges and domains. It updates every 4 hours.☆16May 21, 2021Updated 4 years ago
- OpenCSPM Community Controls☆14May 18, 2021Updated 4 years ago
- Incident Response Playbooks☆15Jun 10, 2019Updated 6 years ago
- Bring Your Own Mitre Att&ck © Matrix !☆13Oct 19, 2023Updated 2 years ago
- Security Assessment Data Management and Analysis Tool☆38May 6, 2021Updated 4 years ago
- Burp extension to find and decode BigIP and Netscaler cookies☆15Jul 20, 2018Updated 7 years ago
- KQL Detections for Microsoft Sentinel and Microsoft 365 Defender☆21Nov 15, 2024Updated last year
- Penetration Testing Checklist☆37May 14, 2020Updated 5 years ago
- Cloud Security Operations Orchestrator☆188Apr 17, 2024Updated last year
- PowerShell stuff I work on☆18Nov 7, 2022Updated 3 years ago
- This repo contains example of raw event examples and possible translations to the OCSF schema.☆55Jul 31, 2025Updated 7 months ago
- A concise, directive, specific, flexible, and free incident response plan template☆758May 7, 2024Updated last year
- GRC (Governance, Risk and Compliance) Software, to manage risks and controls. It is based in best practices and helps organizations to ma…☆27Mar 8, 2023Updated 2 years ago
- Various scripts to check for web applications, Linux OS etc vulnerabilities.☆20Jun 5, 2022Updated 3 years ago
- ☆20Jan 12, 2022Updated 4 years ago
- An experimental Velociraptor implementation using cloud infrastructure☆26Dec 2, 2025Updated 3 months ago
- 🚨ATTENTION🚨 The NIST 800-53 mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept…☆495Apr 3, 2024Updated last year
- An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.☆234Updated this week
- Reference sheet for Threat Hunting Professional Course☆26Mar 10, 2019Updated 6 years ago
- Security, Compliance and Informational Dashboard System☆25May 12, 2021Updated 4 years ago
- An open source Governance Risk Compliance (GRC) solution for corporates and government☆34Jul 10, 2017Updated 8 years ago
- GCP and GSUITE security auditing scripts☆27Apr 29, 2024Updated last year
- ☆56Jun 12, 2021Updated 4 years ago
- Defender Resource Hub☆30Feb 23, 2026Updated last week
- A collection of awesome security controls mapping for solutions across frameworks.☆57Jun 1, 2020Updated 5 years ago
- Machine readable cybersecurity compliance standards library for Python, starting with FISMA and NIST Risk Management Framework☆63Apr 15, 2020Updated 5 years ago
- This repository contains OpenIOC rules to aid in hunting for indicators of compromise and TTPs focused on Advanced Persistent Threat grou…☆26Oct 3, 2023Updated 2 years ago
- A collection of various SIEM rules relating to malware family groups.☆70Jun 18, 2024Updated last year
- Import all the GPOs provided by SimeonOnSecurity to assist in making your domain compliant with all applicable STIGs and SRGs.☆35Oct 18, 2024Updated last year
- A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework☆355Nov 3, 2020Updated 5 years ago
- ☆32Aug 1, 2024Updated last year
- Dockerized Eramba, Open Source Governance, Risk & Compliance (GRC) system https://hub.docker.com/r/digitorus/er…☆31Nov 16, 2019Updated 6 years ago
- One Day of Python for SaintCon 2022☆11Jan 3, 2023Updated 3 years ago
- The Auditree framework tool to run compliance control checks as unit tests.☆71Aug 20, 2024Updated last year
- Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translatin…☆129Apr 3, 2025Updated 10 months ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Nov 2, 2020Updated 5 years ago
- A CALDERA plugin☆81Feb 17, 2026Updated last week