FAIR cyber risk quantification toolkits by Laura Voicu: agent-based control simulation (FAIR-CAM), threat event frequency estimator (PyPI), LLM classification validator (PyPI), Monte Carlo risk engine with IRIS benchmarks.
☆31Oct 2, 2026Updated last week
Alternatives and similar repositories for security-decision-labs
Users that are interested in security-decision-labs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Interactive CRQ Monte Carlo simulation tool for quantifying cybersecurity risk using FAIR methodology. Built for EU SMBs, vCISOs, and sec…☆57Aug 19, 2026Updated last month
- Code that implements Factor Analysis of Information Risk (FAIR) in combination with MITRE ATT&CK using Markov Chain Monte Carlo (via PyMC…☆49Dec 10, 2025Updated 9 months ago
- A Secure Controls Framework (SCF) Power BI App☆28Nov 3, 2024Updated last year
- security trust center project☆17Updated this week
- ☆24Jan 27, 2026Updated 8 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆14Jan 2, 2024Updated 2 years ago
- A Risk-Based Prioritization Taxonomy for prioritizing CVEs (Common Vulnerabilities and Exposures).☆82May 3, 2024Updated 2 years ago
- Repository for CoSAI workstream 3, AI Risk Governance☆35Aug 25, 2026Updated last month
- 🎓Materials for the Hands-On Introduction to OpenFAIR Risk Analysis with Tidyrisk☆14Jan 22, 2021Updated 5 years ago
- Factor Analysis of Information Risk (FAIR) in Python. Maintained by Derive.☆113May 22, 2026Updated 4 months ago
- A hands-on, real-world GRC lab series built for beginners and curious pros alike. No PDFs. No gatekeeping. Just practical labs for unders…☆155Nov 6, 2025Updated 11 months ago
- Detection Reliability And Precision Efficiency (DRAPE) is an index used to assess detection performance☆36Nov 17, 2025Updated 10 months ago
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆227Updated this week
- Infrastructure-as-code for a serverless knowledge base using Amazon Bedrock, Aurora PostgreSQL (with pgvector), Lambda, and S3. This setu…☆19Mar 23, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Source code for 'Business Case Analysis with R' by Robert D. Brown III☆32Mar 9, 2018Updated 8 years ago
- Factor Analysis of Information Risk (FAIR) tool developed in R☆22Mar 23, 2018Updated 8 years ago
- ⚖Open Source Toolkit for Quantitative Risk Assessment☆186Dec 21, 2022Updated 3 years ago
- ☆27Feb 19, 2026Updated 7 months ago
- Interactive web-based cybersecurity and privacy training modules with SCORM support. Deployable as standalone HTML or LMS-integrated cont…☆51Oct 11, 2025Updated 11 months ago
- Create a domain specific (GRC) agent with the Claude Agent SDK☆25Jun 26, 2026Updated 3 months ago
- Repository for the Open Information Security Risk Universe☆65Jul 10, 2022Updated 4 years ago
- Cyber Threat Defense World Modeling☆26May 13, 2026Updated 4 months ago
- NIST OSCAL SDK and CLI☆23Feb 1, 2026Updated 8 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Generate a matrix based on an inventory of InfoSec tools☆24Jul 4, 2024Updated 2 years ago
- Open-source GRC platform for modern security teams. Manage compliance (SOC 2, ISO 27001, HIPAA), risk registers, vendor assessments, and …☆161Updated this week
- A compliance analysis tool which enables organizations to more quickly articulate their compliance posture and also generate supporting e…☆60Mar 6, 2026Updated 7 months ago
- Oxomium is a cybersecurity gouvernance and conformity (GRC) tool for CISCO and SECOPS. By linking framework requirements, controld schedu…☆19Updated this week
- ⚖Open Source Toolkit for Conducting Quantitative Risk Assessment Interviews☆40Mar 10, 2024Updated 2 years ago
- SecureMCP is a security auditing tool designed to detect vulnerabilities and misconfigurations in applications using the [Model Context P…☆140Jun 7, 2025Updated last year
- an experiment that started around writing a spec for everything in GRC☆22Updated this week
- AI-Driven Threat Modeling & Attack Tree Generation with MITRE ATT&CK Integration☆80Aug 1, 2026Updated 2 months ago
- OWASP ThreatAtlas is a collaborative platform for community-driven threat modeling.☆120Updated this week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Intelligence Architecture Mind Map☆150Mar 15, 2024Updated 2 years ago
- Detection Engineering research, open-source tools, conference presentations, and technical publications shared with the security communit…☆28Dec 17, 2025Updated 9 months ago
- Repository for on-going work as part of the SBOM for AI Tiger Team effort.☆42Jul 28, 2025Updated last year
- Controls Assessment Specification☆73Apr 3, 2025Updated last year
- Open-source GRC toolkit from the GRC Engineering Club. Claude Code plugins for evidence collection, SCF crosswalks, multi-framework gap r…☆419Updated this week
- AWS Security Hub☆21Apr 28, 2021Updated 5 years ago
- Adds extensibility to Burp by using a list of payloads to pattern match on HTTP responses highlighting interesting and potentially vulner…☆16Aug 4, 2023Updated 3 years ago