oscal-compass / compliance-trestle
An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.
☆171Updated this week
Alternatives and similar repositories for compliance-trestle:
Users that are interested in compliance-trestle are comparing it to the libraries listed below
- A list of tools, blog posts, and other resources that further the use and adoption of OSCAL standards.☆147Updated last month
- Various deployments of the OSCAL editor☆46Updated 5 months ago
- An initial OpenAPI definition of an OSCAL REST API.☆39Updated 4 months ago
- FedRAMP Automation☆298Updated this week
- A library of React components and an example user interface application that provides a direct UI into NIST's Open Security Controls Asse…☆55Updated 9 months ago
- A simple open source command line tool to support common operations over OSCAL content.☆43Updated 6 months ago
- The community area and documents about Code of Conduct.☆18Updated 3 years ago
- Demo setup for compliance-trestle☆32Updated last week
- NIST SP 800-53 content and other OSCAL content examples☆319Updated 2 months ago
- Open source tool for processing OSCAL based FedRAMP SSPs☆37Updated 3 months ago
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆43Updated 4 years ago
- A repository containing OSCAL serializations of the CIS Critical Security Controls☆48Updated last year
- Compliance-to-Policy (C2P) provides the framework to bridge the gap between compliance and policy administration.☆23Updated last month
- Implementation of the OSCAL REST API☆19Updated 10 months ago
- A case study for ACSAC 2022 utilizing OSCAL with a custom GitHub action to automate assessments.☆23Updated last year
- Tools for the OSCAL project☆35Updated last year
- This repository is a collection of resources to help facilitate compliance innovation utilizing Cloud, DevSecOps and Software Factory tec…☆68Updated last year
- The Compliance Validator☆159Updated this week
- A Java library to support processing OSCAL content☆31Updated 6 months ago
- The Auditree framework tool to run compliance control checks as unit tests.☆60Updated 4 months ago
- Scripts to import OSCAL example content into the Neo4J graph database☆27Updated last year
- Agile authoring tutorial and repo set-up tooling☆18Updated 4 months ago
- An open source, self-service GRC tool to automate security assessments and compliance.☆185Updated last month
- FINOS Common Cloud Controls☆39Updated this week
- ☆16Updated 8 months ago
- Continuous Audit Metrics☆24Updated 7 months ago
- Automate the creation of a System Security Plan (SSP)☆36Updated 3 weeks ago
- NIST SP 800-171 OSCAL Content☆13Updated 2 years ago
- Open Security Controls Assessment Language (OSCAL)☆692Updated last month
- OSCAL reusable component definitions library☆11Updated 8 months ago