FAIR cyber risk quantification toolkits, agent-based control simulation (FAIR-CAM), threat event frequency estimator (PyPI), LLM classification validator (PyPI), Monte Carlo risk engine with IRIS benchmarks.
☆30Jul 3, 2026Updated 2 months ago
Alternatives and similar repositories for security-decision-labs
Users that are interested in security-decision-labs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Interactive CRQ Monte Carlo simulation tool for quantifying cybersecurity risk using FAIR methodology. Built for EU SMBs, vCISOs, and sec…☆56Aug 19, 2026Updated last month
- Code that implements Factor Analysis of Information Risk (FAIR) in combination with MITRE ATT&CK using Markov Chain Monte Carlo (via PyMC…☆47Dec 10, 2025Updated 9 months ago
- A Secure Controls Framework (SCF) Power BI App☆28Nov 3, 2024Updated last year
- MITRE ATT&CK Based App in Power BI☆19Feb 23, 2024Updated 2 years ago
- Historical scores for EPSS☆44Updated this week
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- security trust center project☆17Mar 28, 2026Updated 5 months ago
- ☆24Jan 27, 2026Updated 7 months ago
- ☆14Jan 2, 2024Updated 2 years ago
- A Risk-Based Prioritization Taxonomy for prioritizing CVEs (Common Vulnerabilities and Exposures).☆82May 3, 2024Updated 2 years ago
- Repository for CoSAI workstream 3, AI Risk Governance☆35Aug 25, 2026Updated 3 weeks ago
- 🎓Materials for the Hands-On Introduction to OpenFAIR Risk Analysis with Tidyrisk☆14Jan 22, 2021Updated 5 years ago
- Factor Analysis of Information Risk (FAIR) in Python. Maintained by Derive.☆113May 22, 2026Updated 3 months ago
- Infrastructure-as-code for a serverless knowledge base using Amazon Bedrock, Aurora PostgreSQL (with pgvector), Lambda, and S3. This setu…☆19Mar 23, 2025Updated last year
- Source code for 'Business Case Analysis with R' by Robert D. Brown III☆32Mar 9, 2018Updated 8 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Factor Analysis of Information Risk (FAIR) tool developed in R☆22Mar 23, 2018Updated 8 years ago
- ⚖Open Source Toolkit for Quantitative Risk Assessment☆186Dec 21, 2022Updated 3 years ago
- ☆26Feb 19, 2026Updated 7 months ago
- Interactive web-based cybersecurity and privacy training modules with SCORM support. Deployable as standalone HTML or LMS-integrated cont…☆50Oct 11, 2025Updated 11 months ago
- Create a domain specific (GRC) agent with the Claude Agent SDK☆25Jun 26, 2026Updated 2 months ago
- Repository for the Open Information Security Risk Universe☆65Jul 10, 2022Updated 4 years ago
- AIBOM Workshop RSA 2024☆15May 20, 2024Updated 2 years ago
- Cyber Threat Defense World Modeling☆26May 13, 2026Updated 4 months ago
- NIST OSCAL SDK and CLI☆23Feb 1, 2026Updated 7 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Generate a matrix based on an inventory of InfoSec tools☆24Jul 4, 2024Updated 2 years ago
- Open-source GRC platform for modern security teams. Manage compliance (SOC 2, ISO 27001, HIPAA), risk registers, vendor assessments, and …☆159Updated this week
- A compliance analysis tool which enables organizations to more quickly articulate their compliance posture and also generate supporting e…☆60Mar 6, 2026Updated 6 months ago
- Oxomium is a cybersecurity gouvernance and conformity (GRC) tool for CISCO and SECOPS. By linking framework requirements, controld schedu…☆19Jul 27, 2026Updated last month
- ⚖Open Source Toolkit for Conducting Quantitative Risk Assessment Interviews☆40Mar 10, 2024Updated 2 years ago
- SecureMCP is a security auditing tool designed to detect vulnerabilities and misconfigurations in applications using the [Model Context P…☆140Jun 7, 2025Updated last year
- an experiment that started around writing a spec for everything in GRC☆21Jul 21, 2026Updated last month
- AI-Driven Threat Modeling & Attack Tree Generation with MITRE ATT&CK Integration☆79Aug 1, 2026Updated last month
- OWASP ThreatAtlas is a collaborative platform for community-driven threat modeling.☆119Jul 27, 2026Updated last month
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Detection Engineering research, open-source tools, conference presentations, and technical publications shared with the security communit…☆28Dec 17, 2025Updated 9 months ago
- Repository for on-going work as part of the SBOM for AI Tiger Team effort.☆42Jul 28, 2025Updated last year
- Controls Assessment Specification☆73Apr 3, 2025Updated last year
- Open-source GRC toolkit from the GRC Engineering Club. Claude Code plugins for evidence collection, SCF crosswalks, multi-framework gap r…☆404Sep 6, 2026Updated last week
- Adds extensibility to Burp by using a list of payloads to pattern match on HTTP responses highlighting interesting and potentially vulner…☆16Aug 4, 2023Updated 3 years ago
- MCP server implementation for NIST Cybersecurity Framework 2.0☆67Apr 19, 2026Updated 5 months ago
- Please see other maintained fork:☆17Dec 4, 2025Updated 9 months ago