CISO Assistant is a one-stop-shop for GRC, covering Risk, AppSec and Compliance/Audit Management and supporting +70 frameworks worldwide with auto-mapping: NIST CSF, ISO 27001, SOC2, CIS, PCI DSS, NIS...
A scanner for end-of-life (EOL) software and dependencies in container images, filesystems, and SBOMs
Open Source AWS Control Tower
Secure SDLC process template
Coalfire AWS RAMP/pak Reference Architecture
Gathers AWS inventory and outputs CSV in the format for FedRAMP SSP
A collection of awesome framework, libraries, learning tutorials, videos, webcasts, technical resources and cool stuff about General Data Protection Regulation (GDPR).
Coalfire GCP RAMP/pak Reference Architecture
Coalfire Azure RAMP/pak Reference Architecture
Point of Concept: To help to automate the collection of evidence for SOC 2 Audits and etc.
dockerized-cloudsplot, CloudSploit is a security and configuration scanner that can detect hundreds of threats in your AWS account. Don't let a single misstep compromise your entire infrastructure.
Docker Build for GRC Tool - Eramba is a tool that helps with compliance, risk management, control testing, exception management, etc.
Deploy Anchore Enterprise in an environment of your choice. Then follow through a series of labs that showcase how you can improve security across your software supply chain.