strongdm / complyLinks
Compliance automation framework, focused on SOC2
☆1,430Updated 3 years ago
Alternatives and similar repositories for comply
Users that are interested in comply are comparing it to the libraries listed below
Sorting:
- A set of policies, standards and control procedures with mapping to HIPAA, NIST CSF, PCI DSS, SOC2, FedRAMP, CIS Controls, and more.☆327Updated last year
- Security compliance platform - SOC2, CMMC, ASVS, ISO27001, HIPAA, NIST CSF, NIST 800-53, CSC CIS 18, PCI DSS, SSF tracking☆612Updated 3 months ago
- Security Documentation Builder☆369Updated 2 years ago
- PagerDuty's Incident Response Documentation.☆1,031Updated 9 months ago
- IAM Least Privilege Policy Generator☆2,112Updated last week
- Run individual controls or full compliance benchmarks for CIS, PCI, NIST, HIPAA and more across all of your AWS accounts using Powerpipe …☆402Updated last week
- Security policies for Tailscale☆303Updated last month
- AWS Least Privilege for Distributed, High-Velocity Deployment☆1,141Updated 2 years ago
- Documenting SOC 2 tools and processes☆89Updated 3 years ago
- CLI for generating policies, standards and control procedures (PSP) documentation in Markdown and publishing to JupiterOne or Confluence☆87Updated last year
- VSAQ is an interactive questionnaire application to assess the security programs of third parties.☆855Updated 4 years ago
- ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring su…☆1,018Updated 3 weeks ago
- Dow Jones Hammer : Protect the cloud with the power of the cloud(AWS)☆443Updated 2 years ago
- Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS☆1,618Updated 9 months ago
- Open Security Controls Assessment Language (OSCAL)☆788Updated this week
- Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized repo…☆2,144Updated this week
- goSDL☆522Updated 2 years ago
- Public version of PagerDuty's employee security training courses.☆416Updated 2 years ago
- An open source, self-service GRC tool to automate security assessments and compliance.☆194Updated 10 months ago
- Template SOC2 Policy Authority - documentation pipeline☆125Updated 5 years ago
- Built-in Panther detection rules and policies☆419Updated this week
- Open Cloud Security Posture Management Engine☆342Updated 3 years ago
- Monzo's real-time incident response and reporting tool ⚡️☆1,546Updated last year
- ☆1,023Updated last month
- Graph-based security analysis for everyone☆350Updated last year
- OCSF Schema☆730Updated last week
- (DEPRECATED) Diffy is a triage tool used during cloud-centric security incidents, to help digital forensics and incident response (DFIR)…☆632Updated last year
- A curated collection of awesome resources for the zero-trust security model.☆760Updated 2 years ago
- Cartography is a Python tool that consolidates infrastructure assets and the relationships between them in an intuitive graph view powere…☆3,589Updated this week
- CloudTracker helps you find over-privileged IAM users and roles by comparing CloudTrail logs with current IAM policies.☆901Updated 3 years ago