Ecosyste.ms: Repos

An open API service providing repository metadata for many open source software ecosystems.

GitHub topics: compliance-as-code

ansible-lockdown/RHEL8-CIS

Ansible role for Red Hat 8 CIS Baseline

Language: YAML - Size: 2.75 MB - Last synced: about 14 hours ago - Pushed: about 17 hours ago - Stars: 248 - Forks: 156

ComplianceAsCode/auditree-harvest

The Auditree data gathering and reporting tool.

Language: Python - Size: 67.4 KB - Last synced: about 24 hours ago - Pushed: 5 days ago - Stars: 11 - Forks: 4

Optum/sourcehawk

Sourcehawk is an extensible compliance as code tool which allows development teams to run compliance scans on their source code.

Language: Java - Size: 1.04 MB - Last synced: 7 days ago - Pushed: about 1 year ago - Stars: 0 - Forks: 1

gjyoung1974/soc2-policy-templates

Template SOC2 Policy Authority - documentation pipeline

Language: HTML - Size: 30.3 MB - Last synced: 1 day ago - Pushed: over 3 years ago - Stars: 53 - Forks: 27

ComplianceAsCode/auditree-framework

The Auditree framework tool to run compliance control checks as unit tests.

Language: Python - Size: 2.05 MB - Last synced: 14 days ago - Pushed: about 1 year ago - Stars: 54 - Forks: 23

Titan-Systems/titan

Snowflake infrastructure-as-code. Provision environments, automate deploys, CI/CD. Manage RBAC, users, roles, and data access. Declarative Python Resource API. Change Management tool for the Snowflake data warehouse.

Language: Python - Size: 1.82 MB - Last synced: 26 days ago - Pushed: 27 days ago - Stars: 275 - Forks: 16

ansible-lockdown/UBUNTU20-CIS

Ansible role for Ubuntu 2004 CIS Baseline

Language: YAML - Size: 908 KB - Last synced: about 14 hours ago - Pushed: about 17 hours ago - Stars: 173 - Forks: 63

tangentToNothing/ChefConf2019

Size: 2.18 MB - Last synced: about 1 month ago - Pushed: about 5 years ago - Stars: 0 - Forks: 0

ansible-lockdown/RHEL7-STIG

Ansible role for Red Hat 7 STIG Baseline

Language: YAML - Size: 1.88 MB - Last synced: about 14 hours ago - Pushed: about 17 hours ago - Stars: 282 - Forks: 146

ansible-lockdown/AMAZON2-CIS-Audit

Audit configuration for Amazon Linux 2 CIS

Language: YAML - Size: 283 KB - Last synced: about 1 month ago - Pushed: about 1 month ago - Stars: 6 - Forks: 3

gjyoung1974/vgs-cardform-demo

Android Java "add payment card" form - This app demonstrates how simple it is to add payment card data to your app with VeryGoodSecurity

Language: Java - Size: 1.4 MB - Last synced: about 1 month ago - Pushed: over 4 years ago - Stars: 2 - Forks: 1

gjyoung1974/cloud-compliance-automation

Cloud - K8s Security & Compliance Automation Jobs

Language: Python - Size: 213 KB - Last synced: about 1 month ago - Pushed: over 4 years ago - Stars: 1 - Forks: 2

ansible-lockdown/Windows-2019-CIS

CIS Baseline Ansible Role for Windows 2019

Language: YAML - Size: 438 KB - Last synced: about 1 month ago - Pushed: about 1 month ago - Stars: 125 - Forks: 70

undergroundwires/ez-consent

🍪 Minimal & vanilla JS only cookie consent banner with no dependencies.

Language: JavaScript - Size: 3.27 MB - Last synced: about 1 month ago - Pushed: over 1 year ago - Stars: 16 - Forks: 2

ansible-lockdown/RHEL8-STIG

Ansible role for Red Hat 8 STIG Baseline

Language: YAML - Size: 1.31 MB - Last synced: about 1 month ago - Pushed: about 1 month ago - Stars: 92 - Forks: 55

ansible-lockdown/UBUNTU18-CIS

CIS Baseline Ansible Role for Ubuntu 18

Language: YAML - Size: 641 KB - Last synced: about 14 hours ago - Pushed: about 17 hours ago - Stars: 29 - Forks: 25

ansible-lockdown/UBUNTU20-STIG

STIG Baseline Ansible Role for Ubuntu 20

Language: YAML - Size: 150 KB - Last synced: about 14 hours ago - Pushed: about 17 hours ago - Stars: 13 - Forks: 1

HummerRisk/HummerRisk

HummerRisk 是云原生安全平台,包括混合云安全治理和云原生安全检测。

Language: Java - Size: 51.1 MB - Last synced: about 2 months ago - Pushed: 3 months ago - Stars: 1,741 - Forks: 286

ansible-lockdown/RHEL7-CIS

Ansible role for Red Hat 7 CIS Baseline

Language: YAML - Size: 1.19 MB - Last synced: about 2 months ago - Pushed: about 2 months ago - Stars: 469 - Forks: 304

ansible-lockdown/AMAZON2-CIS

Ansible role for Amazon Linux 2 CIS Baseline

Language: YAML - Size: 120 KB - Last synced: 3 months ago - Pushed: 3 months ago - Stars: 24 - Forks: 17

ansible-lockdown/AMAZON2023-CIS

Ansible role for Amazon2023 CIS Baseline

Language: YAML - Size: 248 KB - Last synced: 2 months ago - Pushed: 2 months ago - Stars: 15 - Forks: 9

ansible-lockdown/UBUNTU22-CIS

Ansible role for Ubuntu22 CIS Baseline

Language: YAML - Size: 799 KB - Last synced: about 2 months ago - Pushed: about 2 months ago - Stars: 135 - Forks: 58

ansible-lockdown/RHEL9-CIS

Ansible role for Red Hat 9 CIS Baseline

Language: YAML - Size: 1010 KB - Last synced: about 2 months ago - Pushed: about 2 months ago - Stars: 81 - Forks: 76

mitre/compliance-mapper

(WIP) (ALPHA) Compliance Mapper is a web-based rest-api and application for information assurance control mapping

Language: CSS - Size: 8.44 MB - Last synced: about 2 months ago - Pushed: about 5 years ago - Stars: 5 - Forks: 3

usnistgov/blossom-case-study

A case study for ACSAC 2022 utilizing OSCAL with a custom GitHub action to automate assessments.

Language: HTML - Size: 3.36 MB - Last synced: about 2 months ago - Pushed: over 1 year ago - Stars: 22 - Forks: 3

ansible-lockdown/Windows-2016-CIS

CIS Baseline Ansible Role for Windows 2016

Language: YAML - Size: 329 KB - Last synced: about 1 month ago - Pushed: about 1 month ago - Stars: 22 - Forks: 29

ansible-lockdown/Windows-2022-CIS

CIS Baseline Ansible Role for Windows 2022

Language: YAML - Size: 416 KB - Last synced: about 2 months ago - Pushed: about 2 months ago - Stars: 50 - Forks: 18

gjyoung1974/hardened-windows-server

Hardened Windows Server image

Language: HTML - Size: 1.38 MB - Last synced: about 1 month ago - Pushed: over 4 years ago - Stars: 16 - Forks: 11

awslabs/aws-config-engine-for-compliance-as-code

Manage AWS Config Rules at scale in AWS multi-account and/or multi-region environment; with fully configurable deployment (RuleSets) and analytics.

Language: Python - Size: 1.3 MB - Last synced: 26 days ago - Pushed: almost 4 years ago - Stars: 270 - Forks: 95

GrantBirki/auditor-action

The Auditor - A GitHub Action that audits changes made in a pull request, using a customizable configuration

Language: Shell - Size: 284 KB - Last synced: 19 days ago - Pushed: about 2 months ago - Stars: 2 - Forks: 0

ansible-lockdown/RHEL8-STIG-Audit

Audit control files for rhel8 stig - utilising goss

Language: YAML - Size: 750 KB - Last synced: about 17 hours ago - Pushed: about 20 hours ago - Stars: 13 - Forks: 4

ComplianceAsCode/auditree-plant

The Auditree tool for adding external evidence.

Language: Python - Size: 48.8 KB - Last synced: 3 months ago - Pushed: over 1 year ago - Stars: 8 - Forks: 2

ComplianceAsCode/auditree-prune

The Auditree evidence removal tool.

Language: Python - Size: 49.8 KB - Last synced: 12 days ago - Pushed: over 1 year ago - Stars: 6 - Forks: 1

ComplianceAsCode/auditree-arboretum

The Auditree common fetchers, checks and harvest reports library.

Language: Python - Size: 241 KB - Last synced: 25 days ago - Pushed: 7 months ago - Stars: 14 - Forks: 10

deepfence/deepfence_runtime_api

Deepfence Runtime API & code samples

Language: HTML - Size: 776 KB - Last synced: about 1 month ago - Pushed: 9 months ago - Stars: 50 - Forks: 2

ethyca/fidesops 📦

Privacy as Code for DSAR Orchestration: Privacy Request automation to fulfill GDPR, CCPA, and LGPD data subject requests.

Language: Python - Size: 21.3 MB - Last synced: 15 days ago - Pushed: over 1 year ago - Stars: 45 - Forks: 16

gjyoung1974/policy-pipeline

Policy Pipeline : place an SDLC around your compliance documentation with a pipeline that renders policy-as-code to human friendly formats

Language: Dockerfile - Size: 84 KB - Last synced: about 1 month ago - Pushed: over 3 years ago - Stars: 11 - Forks: 2

mitre/cosa

COSA (Compliance Orchestration Situational Awareness) is a multi-part system which allows teams to integrate compliance into a CI/CD pipeline, shift security left (in the DevSecOps process), and track/report progress towards compliance goals. It orchestrates a series of tests, each of which may be automated, manual, or inherited. As a result, it promotes incremental achievement rather than assuming that 100% automation is possible. Multiple control catalogs are supported. Note that COSA is not a scanner - instead, it uses existing scanners to perform that function, recording the results as attachments.

Language: EJS - Size: 858 KB - Last synced: about 2 months ago - Pushed: 9 months ago - Stars: 5 - Forks: 0

goldfiglabs/introspector

A schema and set of tools for using SQL to query cloud infrastructure.

Language: Python - Size: 16.3 MB - Last synced: 3 months ago - Pushed: over 2 years ago - Stars: 66 - Forks: 5

ansible-lockdown/RHEL9-CIS-Audit

Audit configurations for RHEL9 CIS

Language: YAML - Size: 399 KB - Last synced: 3 months ago - Pushed: 7 months ago - Stars: 10 - Forks: 7

aws-samples/aws-control-tower-controls-terraform

This repository describes how to use AWS Control Tower controls, HashiCorp Terraform, and infrastructure as code (IaC) to implement and administer preventive, detective, and proactive security controls. A control (also known as a guardrail) is a high-level rule that provides ongoing governance for your overall AWS Control Tower environment.

Language: HCL - Size: 432 KB - Last synced: 4 months ago - Pushed: 11 months ago - Stars: 42 - Forks: 17

ansible-lockdown/UBUNTU22-CIS-Audit

Audit for Ubuntu 22 CIS

Language: YAML - Size: 316 KB - Last synced: 5 months ago - Pushed: 5 months ago - Stars: 19 - Forks: 5

gjyoung1974/docker-cloudsploit

dockerized-cloudsplot, CloudSploit is a security and configuration scanner that can detect hundreds of threats in your AWS account. Don't let a single misstep compromise your entire infrastructure.

Language: Shell - Size: 170 KB - Last synced: about 1 month ago - Pushed: about 4 years ago - Stars: 6 - Forks: 1

paulveillard/cybersecurity-hipaa-compliance

An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about HIPAA Compliance in Cybersecurity

Size: 39.1 KB - Last synced: 6 months ago - Pushed: 6 months ago - Stars: 1 - Forks: 0

auditmation/policy-as-code

Template for Policy as Code repositories

Size: 19.5 KB - Last synced: 7 months ago - Pushed: 7 months ago - Stars: 0 - Forks: 0

aws-samples/audit-manager-custom-security-frameworks

In addition to providing a solution to create and manage custom security controls and frameworks this repository provide an integration of the security frameworks of France within AWS Audit Manager in order to simplify security assessments.

Language: JavaScript - Size: 2.01 MB - Last synced: 7 months ago - Pushed: 7 months ago - Stars: 5 - Forks: 0

ansible-lockdown/Windows-10-STIG

STIG Baseline Ansible Role for Windows 10

Language: YAML - Size: 432 KB - Last synced: 8 months ago - Pushed: 8 months ago - Stars: 9 - Forks: 1

ansible-lockdown/UBUNTU20-CIS-Audit

CIS Audit configurations for Ubuntu20.04LTS - utilising goss

Language: YAML - Size: 499 KB - Last synced: 6 months ago - Pushed: 6 months ago - Stars: 14 - Forks: 3

ansible-lockdown/POSTGRES-12-CIS

Ansible Role for the Postgresql 12.x CIS

Language: YAML - Size: 247 KB - Last synced: 7 months ago - Pushed: 7 months ago - Stars: 9 - Forks: 8

ansible-lockdown/Windows-2022-STIG

STIG Baseline Ansible Role for Windows 2022

Language: YAML - Size: 215 KB - Last synced: 9 months ago - Pushed: 9 months ago - Stars: 2 - Forks: 0

ansible-lockdown/Windows-2019-STIG

STIG Baseline Ansible Role for Windows 2019

Language: YAML - Size: 456 KB - Last synced: 9 months ago - Pushed: 9 months ago - Stars: 31 - Forks: 17

ansible-lockdown/Windows-2016-STIG

STIG Baseline Ansible Role for Windows 2016

Language: YAML - Size: 490 KB - Last synced: 8 months ago - Pushed: 8 months ago - Stars: 8 - Forks: 8

ansible-lockdown/RHEL7-CIS-Audit

Audit configurations for RHEL7 CIS

Language: YAML - Size: 290 KB - Last synced: 9 months ago - Pushed: 9 months ago - Stars: 19 - Forks: 10

aws-samples/aws-infra-policy-as-code-with-terraform

Implements OPA-based preventive security controls for AWS Infrastructure using Terraform Infrastructure as Code (IaC), that can establish a security baseline and safeguard resources before deployment into the AWS Accounts and reduce security risks.

Language: Open Policy Agent - Size: 213 KB - Last synced: 11 months ago - Pushed: 11 months ago - Stars: 16 - Forks: 2

oscal-club/website

The new and improved oscal.club website.

Language: JavaScript - Size: 7.53 MB - Last synced: almost 1 year ago - Pushed: about 1 year ago - Stars: 0 - Forks: 2

ansible-lockdown/UBUNTU18-STIG

STIG Baseline Ansible Role for Ubuntu 18

Language: YAML - Size: 263 KB - Last synced: 8 months ago - Pushed: 8 months ago - Stars: 4 - Forks: 1

realjkg/aptumcloud

Initial MVP repository with GCP Hardened templates

Language: HCL - Size: 29.3 KB - Last synced: about 1 year ago - Pushed: about 1 year ago - Stars: 1 - Forks: 0

BrunoReboul/ram

Real-time Asset Monitor

Language: Go - Size: 1.59 MB - Last synced: 10 months ago - Pushed: about 1 year ago - Stars: 11 - Forks: 2

sentinelblue/ScubaGear Fork of cisagov/ScubaGear

(Azure Gov and GCC High Supported). Automation to assess the state of your M365 tenant against CISA's baselines.

Language: Open Policy Agent - Size: 24.8 MB - Last synced: 5 months ago - Pushed: 5 months ago - Stars: 1 - Forks: 0

austinsonger/Make-HIPAA-Compliance

Helping Operating Systems become HIPAA Compliant

Language: PowerShell - Size: 18.6 KB - Last synced: about 1 month ago - Pushed: over 4 years ago - Stars: 4 - Forks: 0

rolfschutten/governance-with-policy-driven-guardrails

Repository for the Azure Governance Best Practices: Ensuring Compliance with Policy-driven Guardrails blog post, to implement policy-driven guardrails using Terraform.

Language: HCL - Size: 6.84 KB - Last synced: about 1 year ago - Pushed: over 1 year ago - Stars: 0 - Forks: 0

paulveillard/cybersecurity-SOAR

A collection of awesome framework, libraries, learning tutorials, videos, webcasts, technical resources and cool stuff about Security Orchestration, Automation and Response (SOAR).

Size: 324 KB - Last synced: over 1 year ago - Pushed: over 1 year ago - Stars: 16 - Forks: 4

paulveillard/cybersecurity-soc-compliance

A collection of awesome framework, libraries, documents, learning tutorials, resources about SOC 2 tools and processes.

Size: 301 KB - Last synced: over 1 year ago - Pushed: over 2 years ago - Stars: 7 - Forks: 1

zsolt-halo/aws-config-advanced-query

A collection of useful queries that can be used to verify compliance/security across your AWS assets

Language: TSQL - Size: 5.86 KB - Last synced: about 1 year ago - Pushed: almost 5 years ago - Stars: 25 - Forks: 4

aws-samples/aws-security-hub-response-and-remediation

Pre-configured response & remediation playbooks for AWS Security Hub

Size: 123 KB - Last synced: about 1 year ago - Pushed: over 2 years ago - Stars: 57 - Forks: 49

while-true-do/ansible-role-sys_firewalld

An Ansible role to install and configure firewalld.

Language: Jinja - Size: 17.6 KB - Last synced: over 1 year ago - Pushed: over 1 year ago - Stars: 2 - Forks: 2

ansible-lockdown/UBUNTU18-CIS-Audit

Audit configurations for Ubuntu 1804 CIS - utilising goss

Language: YAML - Size: 111 KB - Last synced: over 1 year ago - Pushed: over 2 years ago - Stars: 2 - Forks: 1

ansible-lockdown/Kubernetes1.6.1-CIS

CIS Baseline Ansible Role for Kubernetes 1.6.1

Size: 20.5 KB - Last synced: over 1 year ago - Pushed: over 3 years ago - Stars: 13 - Forks: 4

GrantBirki/auditor-action-core

The Auditor Action's Core Engine

Language: JavaScript - Size: 1.92 MB - Last synced: 2 months ago - Pushed: 2 months ago - Stars: 0 - Forks: 0

dockpack/ansible-auditd Fork of KainosSoftwareLtd/ansible-auditd

Ansible module to deploy and configure auditd in a compliant way

Language: Jinja - Size: 14.6 KB - Last synced: over 1 year ago - Pushed: over 2 years ago - Stars: 1 - Forks: 0

Optum/sourcehawk-scan-github-action

This action runs a sourcehawk scan on the repository source code

Language: Shell - Size: 37.1 KB - Last synced: 7 days ago - Pushed: about 1 year ago - Stars: 1 - Forks: 0

while-true-do/ansible-role-srv_ssh

An Ansible to install and configure the ssh server.

Language: Python - Size: 14.6 KB - Last synced: over 1 year ago - Pushed: about 4 years ago - Stars: 2 - Forks: 0

ATO-ASAP/website

Language: JavaScript - Size: 14.4 MB - Last synced: over 1 year ago - Pushed: about 3 years ago - Stars: 2 - Forks: 0

mathieubrd/ami-factory

A pipeline that creates hardened AWS AMIs based on compliance rules and remediation scripts.

Language: HCL - Size: 3.24 MB - Last synced: about 1 month ago - Pushed: about 1 month ago - Stars: 2 - Forks: 1

trend-anz/Cloud-One-Conformity-Custom-Checks

A collection of Cloud One Conformity custom checks, bringing data & alerts from other Trend Micro Cloud One products.

Language: Python - Size: 311 KB - Last synced: over 1 year ago - Pushed: almost 3 years ago - Stars: 0 - Forks: 3

datapio/klander

Audit your Kubernetes cluster state and reconcile it

Language: Python - Size: 75.2 KB - Last synced: about 1 year ago - Pushed: almost 3 years ago - Stars: 3 - Forks: 1

gjyoung1974/gcloud-sod

GCP:Google Cloud Platform - Shared VPC Networking SOD demonstration

Language: HCL - Size: 81.1 KB - Last synced: over 1 year ago - Pushed: over 5 years ago - Stars: 0 - Forks: 1

vanakema/opencontrol-json-schema

JSON Schema for OpenControl

Size: 5.86 KB - Last synced: about 2 months ago - Pushed: almost 5 years ago - Stars: 2 - Forks: 0

anthonygrees/inspec_wrapper_with_input

An InSpec wrapper profile example that child profiles and passes input variables

Language: Ruby - Size: 10.7 KB - Last synced: 12 months ago - Pushed: over 3 years ago - Stars: 0 - Forks: 2

githubfoam/compliance-as-code-pipeline

compliance as code

Language: Shell - Size: 196 KB - Last synced: about 1 year ago - Pushed: almost 4 years ago - Stars: 0 - Forks: 0

githubfoam/tdi-sandbox2

Compliance as Code, DevSecOps Pipeline,Test-Driven Infrastructure, CIS templates

Language: Ruby - Size: 30.3 KB - Last synced: about 1 year ago - Pushed: over 5 years ago - Stars: 1 - Forks: 0

githubfoam/tdi-sandbox

Compliance as Code, DevSecOps Pipeline,Test-Driven Infrastructure

Language: Ruby - Size: 37.1 KB - Last synced: about 1 year ago - Pushed: over 4 years ago - Stars: 0 - Forks: 0

githubfoam/freewheeler

data center as code, data center as compliance, molecule, tox

Language: Python - Size: 112 KB - Last synced: about 1 year ago - Pushed: almost 4 years ago - Stars: 0 - Forks: 0

githubfoam/CJIS_sandbox

compliance as code audit CCE-XXXXX-X NIST-800-XX-XX-XX PCI-DSS-Req-X.X.X CJIS-X.X.X

Size: 22.5 KB - Last synced: 12 months ago - Pushed: over 4 years ago - Stars: 0 - Forks: 0

ppetko/Silo

Silo - Cloud Native Backup Solution using AWS Glacier and S3

Language: Go - Size: 22.5 KB - Last synced: 6 days ago - Pushed: over 4 years ago - Stars: 0 - Forks: 0

ScottLogic/finos-cloud-services-certification

A prototype implementation of the FINOS Cloud Services Certification tests

Language: Java - Size: 34.2 KB - Last synced: 17 days ago - Pushed: over 4 years ago - Stars: 2 - Forks: 0

while-true-do/ansible-role-sys_audit

An Ansible Role to install and configure audit.

Language: Python - Size: 15.6 KB - Last synced: over 1 year ago - Pushed: almost 5 years ago - Stars: 1 - Forks: 0

while-true-do/ansible-role-sys_aide

An Ansible Role to install and configure AIDE.

Language: Python - Size: 9.77 KB - Last synced: over 1 year ago - Pushed: almost 5 years ago - Stars: 1 - Forks: 0