Focused on Making GRC work Easier
✨ This is an organization from @Elevated-Standards
Focused on Making GRC work Easier
✨ This is an organization from @Elevated-Standards
Point of Concept: To help to automate the collection of evidence for SOC 2 Audits and etc.
Focuses on automating the management of Plans of Action and Milestones (POAM) using GitHub Actions and various external integrations.
Python 2
The POAM Pilot is a application designed to streamline the tracking, management, and reporting of security vulnerabilities and compliance requirements.
This repository automates the collection and management of evidence from various tools and sources, committing the data for transparency and traceability. It's designed to gather evidence that tool…
Python 1
[NOT PRODUCTION READY] This GitHub Action allows you to scan EC2 instances for software vulnerabilities using Amazon Inspector from your GitHub Actions workflows. Both agent-based and agentless sca…
Python 1
Cloudit automates compliance with evidence collection. Cloudit streamlines vulnerability tracking, audit workflows, and compliance reporting by gathering artifacts, comparing findings, and generating actionable plans—keeping your organization audit-ready at all times.
TenableTrawler (Cloud OR FedCloud) is a Python project that pulls scan results via the Tenable API, laying them into organized, POAM-ready outputs. It supports various scans and exports in formats like CSV, JSON, and YAML.
Toolkit is a organized project of all of other projects into one if a organization needs to use them all.
Pulls scan results using the AWS Inspector API, combines various AWS Inspector scan results, and formats them scan results into an organized output that is POAM-ready.
Creates a Inventory Excel Spreadsheet Using FedRAMP Template for AWS, Azure, GCP
Terraform module to provision AWS Inspector
The POAM Pilot is a application designed to streamline the tracking, management, and reporting of security vulnerabilities and compliance requirements.
GitHub Action that can be used as workflow for automatic update via Pull Requests infrastructure repository according to versions to components sources