oscal-compass / compliance-to-policyLinks
Compliance-to-Policy (C2P) provides the framework to bridge the gap between compliance and policy administration.
☆33Updated 7 months ago
Alternatives and similar repositories for compliance-to-policy
Users that are interested in compliance-to-policy are comparing it to the libraries listed below
Sorting:
- Demo setup for compliance-trestle☆35Updated 2 months ago
- An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.☆214Updated last week
- The Auditree framework tool to run compliance control checks as unit tests.☆71Updated last year
- Open source tool for processing OSCAL based FedRAMP SSPs☆43Updated last year
- Implementation of the OSCAL REST API☆19Updated last year
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆45Updated 5 years ago
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆21Updated 2 years ago
- ☆16Updated last year
- A library of React components and an example user interface application that provides a direct UI into NIST's Open Security Controls Asse…☆63Updated last year
- OSCAL SSP content for technologies shipped by Red Hat☆15Updated 2 years ago
- Various deployments of the OSCAL editor☆47Updated last year
- Scripts to import OSCAL example content into the Neo4J graph database☆29Updated 2 years ago
- Privateer is a plugin-based framework to validate the status of deployed resources.☆16Updated last week
- A simple open source command line tool to support common operations over OSCAL content.☆55Updated 3 months ago
- ☆18Updated 4 years ago
- A list of tools, blog posts, and other resources that further the use and adoption of OSCAL standards.☆189Updated 4 months ago
- Posture Attribute Collection and Evaluation☆24Updated 2 years ago
- An initial OpenAPI definition of an OSCAL REST API.☆40Updated last year
- Security Control Knowledge Graph☆42Updated 3 years ago
- Utilities for programmatic analysis of Cartography data.☆39Updated last month
- Tools for the OSCAL project☆36Updated 2 years ago
- ☆114Updated 3 months ago
- OWASP Foundation Web Respository☆56Updated last month
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆54Updated last year
- The community area and documents about Code of Conduct.☆18Updated 4 years ago
- ☆22Updated 2 months ago
- This repo is a consolidation of Secure Software Supply Chain resources, such as talks, whitepapers, conferences and more.☆139Updated 3 years ago
- Repository for on-going work as part of the SBOM for AI Tiger Team effort.☆39Updated 3 months ago
- A place for the InfoSec community to share and celebrate real stories of organizations successfully using SBOMs (and other bills of mater…☆43Updated 2 years ago
- The Auditree common fetchers, checks and harvest reports library.☆20Updated 2 years ago