awesome-cloud-security
gapps
Our great sponsors
awesome-cloud-security | gapps | |
---|---|---|
1 | 5 | |
560 | 341 | |
- | - | |
4.9 | 7.6 | |
6 months ago | 11 days ago | |
HTML | ||
- | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
awesome-cloud-security
gapps
- Open source GRC platform for SOC2, CSC, CMMC and more
-
Tools for SOC2 Type II audit?
I work on a open source tool called Gapps. You can check it out here: https://github.com/bmarsh9/gapps
-
For CTOs / tech leads of SAAS: When did you become SOC2 compliant?
Check out https://github.com/bmarsh9/gapps if you are interested in preparing for the assessment (disclaimer: I’m the author)
-
Quick question - how to track security controls to be implemented?
Take a look at Gapps (https://github.com/bmarsh9/gapps) made by u/skywalker_1391
-
Software to Implement CIS Control IG1???
I have quickly reviewed Gapps, which is an open source product: https://github.com/bmarsh9/gapps
What are some alternatives?
awesome-cloud-security - 🛡️ Awesome Cloud Security Resources ⚔️
vapi - vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.
arbor-monad-logger
CVWA - Conviso Vulnerable Web Application is the OSS project from the Conviso Application Security for the community. The project represents a vulnerable web application to practice security testing and improve your learning in AppSec..
awesome-aws-security - Curated list of links, references, books videos, tutorials (Free or Paid), Exploit, CTFs, Hacking Practices etc. which are related to AWS Security
steampipe-mod-aws-compliance - Run individual controls or full compliance benchmarks for CIS, PCI, NIST, HIPAA and more across all of your AWS accounts using Powerpipe and Steampipe.
awesome-sec-s3 - A collection of awesome AWS S3 tools that collects and enumerates exposed S3 buckets
comply - Compliance automation framework, focused on SOC2
AWS-Certified-Cloud-Practitioner-Certification-My-Notes - In the process of obtaining the AWS Certified Cloud Practitioner certificate, I took notes of the topics I encountered from more than 10 sources and more than 2000+ questions and I share them in this repo.
OSSEC - OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.
secure-sdlc-process-template - Secure SDLC process template
lunasec - LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/