gborough / roscal
Open Security Controls Assessment Language Toolbox
☆11Updated this week
Alternatives and similar repositories for roscal:
Users that are interested in roscal are comparing it to the libraries listed below
- Automate vulnerability triage which prioritizes remediation over discovery☆14Updated this week
- Various deployments of the OSCAL editor☆46Updated 6 months ago
- Automatically generated diagrams for OSCAL models☆16Updated 2 years ago
- NIST SP 800-171 OSCAL Content☆13Updated 2 years ago
- ☆12Updated this week
- Repository for the generation of OSCAL data types☆22Updated last week
- Develop Enhancements, Future Implementations and New Education☆12Updated last year
- A simple open source command line tool to support common operations over OSCAL content.☆44Updated 8 months ago
- Demo setup for compliance-trestle☆32Updated this week
- Tools for the OSCAL project☆35Updated last year
- An initial OpenAPI definition of an OSCAL REST API.☆39Updated 5 months ago
- Scripts to import OSCAL example content into the Neo4J graph database☆27Updated 2 years ago
- ☆15Updated 3 years ago
- StartLeft is an automation tool for generating Threat Models written in the Open Threat Model (OTM) format from a variety of different so…☆49Updated last week
- Continuous Audit Metrics☆24Updated 8 months ago
- OSCAL reusable component definitions library☆11Updated 9 months ago
- ☆16Updated last year
- A list of tools, blog posts, and other resources that further the use and adoption of OSCAL standards.☆150Updated 2 months ago
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆43Updated 5 years ago
- Open Security Controls Assessment Language (OSCAL) Deep Differencing Tool☆32Updated last year
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆83Updated this week
- Exploit Prediction Scoring System (EPSS)☆24Updated 2 years ago
- A case study for ACSAC 2022 utilizing OSCAL with a custom GitHub action to automate assessments.☆23Updated last year
- Security Control Knowledge Graph☆27Updated 9 months ago
- Stakeholder-Specific Vulnerability Categorization☆136Updated this week
- Agile authoring tutorial and repo set-up tooling☆18Updated 5 months ago
- OASIS TC Open Repository: A GitHub repository for management of non-normative information about the work of the CSAF Technical Committee,…☆20Updated this week
- ☆14Updated 10 months ago
- Python implementation of Stakeholder-Specific Vulnerability Categorization (SSVC)☆18Updated 2 months ago
- Implementation of the OSCAL REST API☆19Updated 11 months ago