paulveillard / cybersecurity-soc-complianceLinks
A collection of awesome framework, libraries, documents, learning tutorials, resources about SOC 2 tools and processes.
☆25Updated 3 years ago
Alternatives and similar repositories for cybersecurity-soc-compliance
Users that are interested in cybersecurity-soc-compliance are comparing it to the libraries listed below
Sorting:
- The Auditree framework tool to run compliance control checks as unit tests.☆72Updated last year
- ☁️Haven GRC - easier governance, risk, and compliance 👨⚕️👮♀️🦸♀️🕵️♀️👩🔬☆103Updated 4 years ago
- Manage, monitor and improve your cyber security posture.☆93Updated 2 years ago
- Tools for the OSCAL project☆36Updated 2 years ago
- SOC 2 should be easy to get done and it should be inexpensive. Here's everything you wanted to know.☆45Updated last month
- NIST OSCAL SDK and CLI☆19Updated last month
- Template SOC2 Policy Authority - documentation pipeline☆135Updated 5 years ago
- OSCAL SSP content for technologies shipped by Red Hat☆15Updated 2 years ago
- eMASSer is a command-line interface (CLI) that aims to automate routine business use-cases and provide utility surrounding the Enterprise…☆46Updated last month
- CLI for generating policies, standards and control procedures (PSP) documentation in Markdown and publishing to JupiterOne or Confluence☆89Updated this week
- Open Security Controls Assessment Language (OSCAL) Deep Differencing Tool☆38Updated 2 years ago
- SANS has developed a set of information security policy templates. These are free to use and fully customizable to your company's IT secu…☆51Updated 4 years ago
- Use SQL to instantly query Jira. Open source CLI. No DB required.☆25Updated last week
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆45Updated 5 years ago
- An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites…☆28Updated 3 years ago
- R.A.Y.D.E.R revolutionizes security testing for generative AI by letting you test chatbots directly through their web interfaces. No API …☆14Updated 4 months ago
- Visual Studio Code extension for writing Terrascan Rego policies☆22Updated last year
- cis_pdf_parser.py is a python script for parsing CIS Benchmark PDF files from the Center for Internet Security into CSV files.☆29Updated last year
- Documentation on the OpenRMF application, including scripts to run the whole stack as well as just infrastructure with documentation on u…☆148Updated 3 months ago
- Jimi is an automation first no-code platform designed and developed originally for Security Orchestration and Response. Since its launch …☆167Updated last year
- DefectDojo Community Content☆18Updated 3 weeks ago
- Active Response plugin. Osquery to execute wazuh/ossec active response plugins. You can write your own plugins, easy to plug☆11Updated 5 years ago
- The SaaS CTO Security Checklist Redux, The DevOps Security Checklist, and The Personal Infosec & Security Checklist☆25Updated 4 years ago
- Terraform Manifests to create resources on Google Cloud Platform for hobbyists with limited budgets.☆49Updated 4 years ago
- A modern, all-in-one Governance, Risk & Compliance (GRC) solution designed for privacy, security, and compliance teams. As an open-source…☆63Updated last week
- A web application to streamline the development of STIGs from SRGs☆82Updated last month
- This python app generates NIST 800 53 control implementation for each control and generate the CSV file.☆53Updated last year
- Examples, samples, snippets and scripts to use with Steampipe.☆52Updated last year
- A linux desktop in the cloud - reachable via browser using Apache Guacamole. Deployed automatically via Terraform ( + Ansible ).☆78Updated 2 years ago
- OSCAL reusable component definitions library☆13Updated 8 months ago