salesforce / cloud-guardrails
Rapidly apply hundreds of security controls in Azure
☆184Updated last year
Alternatives and similar repositories for cloud-guardrails:
Users that are interested in cloud-guardrails are comparing it to the libraries listed below
- Security Scanner based on CIS benchmark 1.1 inspired by Scout2☆53Updated 2 years ago
- A collection of DoD and Federal Government Cloud Computing Resources☆48Updated 3 years ago
- Unlocking Serverless Computing to Assess Security Controls☆250Updated 11 months ago
- A GitHub action that scans the Azure resources for policy violations.☆57Updated 6 months ago
- ☆64Updated 6 months ago
- ThreatModel for Azure Storage - Library of all the attack scenarios on Azure Storage, and how to mitigate them following a risk-based app…☆57Updated last year
- Run individual configuration, compliance and security controls or full compliance benchmarks for CIS, HIPAA HITRUST, NIST, and more acros…☆57Updated last week
- Microsoft Security Guidance☆248Updated 8 months ago
- A docker container to simplify and secure the use of Infrastructure as Code (IaC)☆70Updated this week
- Security auditing tool for Azure environments☆567Updated 2 years ago
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.☆97Updated last year
- Compares and analyzes GCP IAM roles.☆77Updated 8 months ago
- List of vendors that do not allow IMDSv2 enforcement☆142Updated 9 months ago
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrix☆59Updated last year
- ThreatModel for Amazon S3 - Library of all the attack scenarios on Amazon S3, and how to mitigate them following a risk-based approach☆150Updated last year
- A curated list of awesome Microsoft Azure Security tools, guides, blogs, and other resources.☆420Updated last year
- Study Guide for the Microsoft Azure Security Technologies Exam☆116Updated 2 years ago
- Open Cloud Security Posture Management Engine☆337Updated 2 years ago
- GCP CSPM using Google Sheets☆34Updated 8 months ago
- 🖇️ STRIDE vs. ASVS equivalence table☆75Updated 5 months ago
- Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).☆141Updated 10 months ago
- ☆112Updated last month
- 🚨ATTENTION🚨 The Security Stack Mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is k…☆379Updated 10 months ago
- Get started fast with a built out lab, built from scratch via Azure Resource Manager (ARM) and Desired State Configuration (DSC), to test…☆235Updated 4 years ago
- CONVEX is a group of CTFs that are independently deployable into participant Azure environments.☆137Updated 2 years ago
- A Cloud Security Posture Manager or CSPM with a focus on security analysis for the modern cloud stack and a focus on the emerging threat …☆179Updated 5 months ago
- A MITRE ATT&CK Navigator export for AWS GuardDuty Findings☆137Updated 3 years ago
- Convert cloudtrail data to MITRE ATT&CK Sightings☆79Updated 2 years ago
- A command line tool to test Azure Policy relying on Terraform + Golang☆37Updated last year
- ☆65Updated 3 years ago