salesforce / cloud-guardrails
Rapidly apply hundreds of security controls in Azure
☆184Updated last year
Alternatives and similar repositories for cloud-guardrails:
Users that are interested in cloud-guardrails are comparing it to the libraries listed below
- Security Scanner based on CIS benchmark 1.1 inspired by Scout2☆53Updated 2 years ago
- A GitHub action that scans the Azure resources for policy violations.☆57Updated 7 months ago
- Unlocking Serverless Computing to Assess Security Controls☆250Updated last year
- ThreatModel for Azure Storage - Library of all the attack scenarios on Azure Storage, and how to mitigate them following a risk-based app…☆58Updated last year
- A docker container to simplify and secure the use of Infrastructure as Code (IaC)☆71Updated this week
- A collection of DoD and Federal Government Cloud Computing Resources☆48Updated 3 years ago
- ☆65Updated 7 months ago
- A repo for testing and demonstration purposes.☆30Updated last month
- Run individual configuration, compliance and security controls or full compliance benchmarks for CIS, HIPAA HITRUST, NIST, and more acros…☆58Updated last month
- Microsoft Security Guidance☆246Updated 10 months ago
- A command line tool to test Azure Policy relying on Terraform + Golang☆38Updated last year
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrix☆58Updated last year
- Bicep and Terraform code examples for policy-as-code workflows. Azure governance guardrails and automation - by @JesseLoudon☆177Updated 11 months ago
- 🚨ATTENTION🚨 The Security Stack Mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is k…☆382Updated 11 months ago
- A curated list of awesome Microsoft Azure Security tools, guides, blogs, and other resources.☆424Updated last year
- Convert cloudtrail data to MITRE ATT&CK Sightings☆79Updated 2 years ago
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.☆98Updated last year
- List of vendors that do not allow IMDSv2 enforcement☆141Updated 10 months ago
- ☆112Updated 2 months ago
- Compares and analyzes GCP IAM roles.☆77Updated 2 weeks ago
- Coalfire AWS RAMP/pak Reference Architecture☆36Updated 6 months ago
- A collection of ARM-based detections for Azure/AzureAD based TTPs☆85Updated last year
- GCP CSPM using Google Sheets☆35Updated 9 months ago
- This repository will teach you have to do my talk "Pushing Left, Like a Boss".☆70Updated 3 years ago
- Security auditing tool for Azure environments☆575Updated 2 years ago
- Study Guide for the Microsoft Azure Security Technologies Exam☆118Updated 2 years ago
- Check if an IP address is part of an Azure Service Tag☆32Updated 3 years ago
- Hands-on Security Labs focused on Azure IaaS Security☆49Updated 5 years ago
- Best practice example for secure and compliant Google Cloud Platform infrastructure☆104Updated 2 years ago
- Cross cloud workload identity research and workshops☆36Updated this week