salesforce / cloud-guardrails
Rapidly apply hundreds of security controls in Azure
☆184Updated last year
Alternatives and similar repositories for cloud-guardrails:
Users that are interested in cloud-guardrails are comparing it to the libraries listed below
- Security Scanner based on CIS benchmark 1.1 inspired by Scout2☆53Updated 2 years ago
- ThreatModel for Azure Storage - Library of all the attack scenarios on Azure Storage, and how to mitigate them following a risk-based app…☆58Updated last year
- ☆65Updated 9 months ago
- Unlocking Serverless Computing to Assess Security Controls☆252Updated last year
- A GitHub action that scans the Azure resources for policy violations.☆58Updated 8 months ago
- A collection of DoD and Federal Government Cloud Computing Resources☆48Updated 4 years ago
- Microsoft Security Guidance☆247Updated 11 months ago
- A docker container to simplify and secure the use of Infrastructure as Code (IaC)☆72Updated this week
- 🚨ATTENTION🚨 The Security Stack Mappings have migrated to the Center ’s Mappings Explorer project. See README below. This repository is k…☆386Updated last year
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrix☆58Updated last year
- A curated list of awesome Microsoft Azure Security tools, guides, blogs, and other resources.☆432Updated last year
- List of vendors that do not allow IMDSv2 enforcement☆141Updated last year
- Security auditing tool for Azure environments☆577Updated 2 years ago
- Run individual configuration, compliance and security controls or full compliance benchmarks for CIS, HIPAA HITRUST, NIST, and more acros…☆58Updated this week
- ThreatModel for Amazon S3 - Library of all the attack scenarios on Amazon S3, and how to mitigate them following a risk-based approach☆153Updated last year
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.☆100Updated last year
- Study Guide for the Microsoft Azure Security Technologies Exam☆120Updated last month
- Get started fast with a built out lab, built from scratch via Azure Resource Manager (ARM) and Desired State Configuration (DSC), to test…☆236Updated 4 years ago
- ☆117Updated last month
- A collection of ARM-based detections for Azure/AzureAD based TTPs☆85Updated last year
- Compares and analyzes GCP IAM roles.☆77Updated last month
- Create custom auto-remediation solutions using serverless functions in the cloud.☆53Updated last year
- Open Cloud Security Posture Management Engine☆338Updated 3 years ago
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆53Updated last year
- Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).☆143Updated this week
- This repository will teach you have to do my talk "Pushing Left, Like a Boss".☆70Updated 3 years ago
- Convert cloudtrail data to MITRE ATT&CK Sightings☆80Updated 2 years ago
- GCP CSPM using Google Sheets☆35Updated last month
- CONVEX is a group of CTFs that are independently deployable into participant Azure environments.☆140Updated 2 years ago
- This repo is a consolidation of Secure Software Supply Chain resources, such as talks, whitepapers, conferences and more.☆138Updated 2 years ago