opencontrol / standardsLinks
OpenControl-formatted industry standards and requirement documents
☆47Updated 2 years ago
Alternatives and similar repositories for standards
Users that are interested in standards are comparing it to the libraries listed below
Sorting:
- An open source, self-service GRC tool to automate security assessments and compliance.☆203Updated last year
- Osquery Mangement Server☆115Updated 5 years ago
- NIST SP 800-53, Security and Privacy Controls for Federal Information Systems and Organizations☆40Updated 3 months ago
- Repository for the Open Information Security Risk Universe☆64Updated 3 years ago
- ☁️Haven GRC - easier governance, risk, and compliance 👨⚕️👮♀️🦸♀️🕵️♀️👩🔬☆103Updated 4 years ago
- NIST SP 800-53 Rev 5 as Data☆25Updated 5 years ago
- Automate the creation of a System Security Plan (SSP)☆45Updated last week
- Prototype of making fisma 800-53 controls interactive☆29Updated 5 years ago
- A set of policies, standards and control procedures with mapping to HIPAA, NIST CSF, PCI DSS, SOC2, FedRAMP, CIS Controls, and more.☆337Updated last month
- Remote Memory Acquisition Tool☆252Updated 5 years ago
- Vendor Security Model Contract☆97Updated 3 years ago
- Machine readable cybersecurity compliance standards library for Python, starting with FISMA and NIST Risk Management Framework☆63Updated 5 years ago
- hyperGRC is a lightweight, in-browser tool for managing compliance-as-code repositories in OpenControl format.☆27Updated 4 years ago
- Utilities for programmatic analysis of Cartography data.☆40Updated 3 weeks ago
- Security Documentation Builder☆373Updated 2 years ago
- CLI for generating policies, standards and control procedures (PSP) documentation in Markdown and publishing to JupiterOne or Confluence☆88Updated this week
- The Auditree framework tool to run compliance control checks as unit tests.☆71Updated last year
- A minimalist risk management program!☆148Updated 3 years ago
- Example detection of compromise credentials in AWS☆122Updated 7 years ago
- The SOCless automation framework☆140Updated 11 months ago
- Cloud multi-account metadata management tool.☆91Updated 5 years ago
- ☆83Updated 6 years ago
- Python installable command line utiltity for mitigation of host and key compromises.☆347Updated 4 years ago
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆46Updated 5 years ago
- YAML schema, examples, and validators for OpenControl format.☆76Updated 6 years ago
- EXPERIMENTAL: a template builder for FedRAMP System Security Plans☆39Updated 6 years ago
- 'Continuous' AWS perimeter monitoring: Periodically scan internet facing AWS resources to detect misconfigured services.☆64Updated 6 years ago
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆55Updated last month
- Simple DLP monitor for AWS S3 is a tool built on top of CloudWatch events and Lambda functions to alert you when data is transferred to S…☆18Updated 5 years ago
- InSpec profile to validate your VPC to the standards of the CIS Amazon Web Services Foundations Benchmark☆77Updated last month