How to systematically secure anything: a repository about security engineering
-
Updated
Mar 7, 2023
How to systematically secure anything: a repository about security engineering
OSCAL tools for AI agents
An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about Security Assurance in Cybersecurity
ISO 27001 ISMS / GRC SaaS portfolio with NIST CSF + SOC 2 mapping: risks, SoA, audits, CAPA, management review, evidence index.
A high-performance dependency resolution engine for mapping enterprise Linux software supply chains. Features a Conflict-Driven Clause Learning (CDCL) solver, Compressed Sparse Row (CSR) memory optimization, and Native GraphDB (Neo4j) egress for DevSecOps reachability analysis.
TPRM portfolio focused on US privacy & cloud vendor risk: minimization, retention/deletion, DSAR readiness, subprocessors, evidence-backed decisions.
A model for evaluating security based on system behavior rather than control artifacts.
Enterprise Linux Provenance Risk Agent is a container-first agentic application for explainable Enterprise Linux artifact risk analysis.
Evidence-backed GRC & assurance portfolio for SDG (COBIT, NIST CSF 2.0, ISO 27001/27002/27005, ISO 31000, SOC 2, ISO 37301).
Add a description, image, and links to the security-assurance topic page so that developers can more easily learn about it.
To associate your repository with the security-assurance topic, visit your repo's landing page and select "manage topics."