strongdm / comply
Compliance automation framework, focused on SOC2
☆1,338Updated 2 years ago
Alternatives and similar repositories for comply:
Users that are interested in comply are comparing it to the libraries listed below
- A set of policies, standards and control procedures with mapping to HIPAA, NIST CSF, PCI DSS, SOC2, FedRAMP, CIS Controls, and more.☆305Updated 7 months ago
- Security compliance platform - SOC2, CMMC, ASVS, ISO27001, HIPAA, NIST CSF, NIST 800-53, CSC CIS 18, PCI DSS, SSF tracking. https://gapps…☆488Updated this week
- goSDL☆525Updated 2 years ago
- PagerDuty's Incident Response Documentation.☆1,023Updated last week
- Security policies for Tailscale☆276Updated last week
- IAM Least Privilege Policy Generator☆2,036Updated last week
- Dow Jones Hammer : Protect the cloud with the power of the cloud(AWS)☆437Updated last year
- Run individual controls or full compliance benchmarks for CIS, PCI, NIST, HIPAA and more across all of your AWS accounts using Powerpipe …☆375Updated last month
- Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS☆1,500Updated last week
- Template SOC2 Policy Authority - documentation pipeline☆106Updated 4 years ago
- AWS Least Privilege for Distributed, High-Velocity Deployment☆1,127Updated last year
- Public version of PagerDuty's employee security training courses.☆412Updated last year
- AWS Security Tools (AST) in a simple Docker container.☆286Updated 3 years ago
- ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring su…☆969Updated last week
- Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized repo…☆2,026Updated last week
- Built-in Panther detection rules and policies☆349Updated this week
- VSAQ is an interactive questionnaire application to assess the security programs of third parties.☆849Updated 4 years ago
- Cartography is a Python tool that consolidates infrastructure assets and the relationships between them in an intuitive graph view powere…☆3,117Updated this week
- A minimalist risk management program!☆122Updated 2 years ago
- Security Documentation Builder☆353Updated last year
- An open source, self-service GRC tool to automate security assessments and compliance.☆185Updated last month
- NIST SP 800-53 content and other OSCAL content examples☆319Updated 2 months ago
- Open Security Controls Assessment Language (OSCAL)☆692Updated last month
- A desktop application that checks security-related settings and makes recommendations for improvements without requiring central device m…☆458Updated last year
- Open Cloud Security Posture Management Engine☆336Updated 2 years ago
- Cloud Security Suite - One stop tool for auditing the security posture of AWS/GCP/Azure infrastructure.☆1,145Updated 2 years ago
- CLI for generating policies, standards and control procedures (PSP) documentation in Markdown and publishing to JupiterOne or Confluence☆84Updated 7 months ago