oracuk / oisruLinks
Repository for the Open Information Security Risk Universe
β64Updated 3 years ago
Alternatives and similar repositories for oisru
Users that are interested in oisru are comparing it to the libraries listed below
Sorting:
- The SOCless automation frameworkβ140Updated 10 months ago
- ποΈ equivalence table between OWASP ASVS standard and STRIDE threat modeling methodology.β75Updated last year
- A small set of scripts to summarize AWS Security Groups, and generate visualizations of the rules.β63Updated 5 years ago
- A place to gather and organize information about using threat modeling frameworks to deal with social conflict in online systemsβ55Updated 6 months ago
- A MITRE ATT&CK Navigator export for AWS GuardDuty Findingsβ139Updated 4 years ago
- This repository stores content that can be used to design a Rapid Threat Model Prototyping process for a software development group.β163Updated 2 years ago
- Segment's Threat Modeling training for our engineersβ244Updated 4 years ago
- Vendor Security Model Contractβ98Updated 3 years ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.β177Updated 3 weeks ago
- β69Updated 5 months ago
- OWASP Cloud Security - Enabling conversations through threat and control storiesβ182Updated 7 years ago
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestratβ¦β279Updated last month
- OCSF Documentationβ150Updated 2 months ago
- Convert cloudtrail data to MITRE ATT&CK Sightingsβ82Updated 3 years ago
- A Cloud Security Posture Manager or CSPM with a focus on security analysis for the modern cloud stack and a focus on the emerging threat β¦β195Updated last year
- β192Updated 2 weeks ago
- Controls Assessment Specificationβ70Updated 9 months ago
- β87Updated 4 years ago
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.β54Updated last month
- Systematic Universal Security Testing Orchestrationβ37Updated 3 years ago
- Stakeholder-Specific Vulnerability Categorizationβ168Updated this week
- GCP CSPM using Google Sheetsβ37Updated 9 months ago
- Computer Aided Integration of Requirements and Information Security - Serverβ167Updated last week
- β65Updated last year
- Project intended to make Attack Maps part of software development by reducing the time it takes to complete them.β48Updated 9 years ago
- β35Updated 4 years ago
- Graph-based security analysis for everyoneβ354Updated last month
- threatspec - continuous threat modeling, through codeβ371Updated 5 years ago
- Presentations, training modules, and other education materials from Duo Security's Application Security team.β77Updated 4 years ago
- Updated incident response generator for training classesβ44Updated 4 years ago