usnistgov / OSCAL
Open Security Controls Assessment Language (OSCAL)
☆712Updated this week
Alternatives and similar repositories for OSCAL:
Users that are interested in OSCAL are comparing it to the libraries listed below
- NIST SP 800-53 content and other OSCAL content examples☆329Updated last week
- FedRAMP Automation☆313Updated this week
- A list of tools, blog posts, and other resources that further the use and adoption of OSCAL standards.☆151Updated this week
- Security Documentation Builder☆355Updated last year
- An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.☆174Updated this week
- An open source, self-service GRC tool to automate security assessments and compliance.☆186Updated 3 months ago
- Various deployments of the OSCAL editor☆46Updated 7 months ago
- A simple open source command line tool to support common operations over OSCAL content.☆45Updated 8 months ago
- A library of React components and an example user interface application that provides a direct UI into NIST's Open Security Controls Asse…☆57Updated 11 months ago
- An initial OpenAPI definition of an OSCAL REST API.☆39Updated 5 months ago
- Joint NIST/FedRAMP tool to interact with OSCAL files via a browser-based GUI☆43Updated 5 years ago
- A repository containing OSCAL serializations of the CIS Critical Security Controls☆48Updated last year
- A case study for ACSAC 2022 utilizing OSCAL with a custom GitHub action to automate assessments.☆23Updated 2 years ago
- Documentation on the OpenRMF application, including scripts to run the whole stack as well as just infrastructure with documentation on u…☆134Updated this week
- Tools for the OSCAL project☆35Updated last year
- An API and client for managing STIG assessments☆138Updated this week
- Automate the creation of a System Security Plan (SSP)☆36Updated this week
- 🚨ATTENTION🚨 The Security Stack Mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is k…☆382Updated 11 months ago
- NIST CyberSecurity Framework management tool☆161Updated 3 years ago
- A set of policies, standards and control procedures with mapping to HIPAA, NIST CSF, PCI DSS, SOC2, FedRAMP, CIS Controls, and more.☆310Updated 8 months ago
- A Java library to support processing OSCAL content☆31Updated 8 months ago
- Built-in Panther detection rules and policies☆367Updated this week
- SAMM stands for Software Assurance Maturity Model.☆398Updated 2 years ago
- Heimdall Enterprise Server 2 lets you view, store, and compare automated security control scan results.☆216Updated this week
- A collection of awesome security controls mapping for solutions across frameworks.☆55Updated 4 years ago
- NIST SP 800-53, Security and Privacy Controls for Federal Information Systems and Organizations☆38Updated 2 months ago
- Continuous Audit Metrics☆25Updated 9 months ago
- This project is about creating and publishing threat model examples.☆418Updated 3 years ago
- OASIS CSAF TC: Supporting version control for Work Product artifacts developed by members of TC, including prose specifications and secon…☆161Updated this week
- A command-line and ruby API of utilities, converters and tools for creating, converting and processing security baseline formats, results…☆92Updated 7 months ago