devsecflow / Cloud-Native-Assurance-Maturity-ModelLinks
A comprehensive framework and assessment toolkit for measuring and improving Cloud Native security maturity across 8 critical business functions. Includes automated scoring, contextual recommendations, and evidence-based evaluation.
☆10Updated 4 months ago
Alternatives and similar repositories for Cloud-Native-Assurance-Maturity-Model
Users that are interested in Cloud-Native-Assurance-Maturity-Model are comparing it to the libraries listed below
Sorting:
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrix☆58Updated 2 years ago
- A full insecure kubernetes application for testing security tools☆89Updated 2 weeks ago
- Cloud Commotion intends to cause chaos to simulate security incidents☆146Updated last year
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆212Updated this week
- A comprehensive checklist and guide for organizations looking to implement a robust cybersecurity program☆46Updated last month
- OWASP Foundation Web Respository☆99Updated 3 weeks ago
- ## Auto-archived due to inactivity. ## Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Securit…☆36Updated last year
- AI Security Shared Responsibility Model☆82Updated last month
- Supply-Chain Firewall (SCFW) is a tool for preventing the installation of malicious npm and PyPI packages☆171Updated last week
- One Conference 2024☆110Updated last year
- Cloud Offensive Breach and Risk Assessment (COBRA) Tool☆97Updated 5 months ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆177Updated 11 months ago
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆102Updated last year
- Summaries, transcripts, key points, and other useful insights from fwd:cloudsec 2025 talks for those of us who don't have time to watch e…☆82Updated 4 months ago
- ☆13Updated last year
- A powerful tool that leverages AI to automatically generate comprehensive security documentation for your projects☆97Updated 3 weeks ago
- An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and secur…☆167Updated last week
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.☆105Updated last year
- AI featured threat modeling and security review action☆44Updated 11 months ago
- Generates runbooks for GuardDuty findings☆39Updated last year
- An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.☆117Updated last month
- ☆192Updated 6 months ago
- Convert cloudtrail data to MITRE ATT&CK Sightings☆81Updated 3 years ago
- Gram is Klarna's own threat model diagramming tool☆327Updated last month
- Threat Designer is a GenerativeAI application designed to automate and streamline the threat modeling process for secure system design.☆154Updated this week
- ☆125Updated last week
- This is a companion to the Security Engineer Questions☆207Updated last year
- A cheatsheet containing AWS CloudTrail events that can be used for Incident Response purposes or Detection Engineering.☆82Updated last year
- Generate datasets of cloud audit logs for common attacks☆222Updated last year
- ☆38Updated 10 months ago