☁️Haven GRC - easier governance, risk, and compliance 👨⚕️👮♀️🦸♀️🕵️♀️👩🔬
-
Updated
Jun 14, 2021 - JavaScript
☁️Haven GRC - easier governance, risk, and compliance 👨⚕️👮♀️🦸♀️🕵️♀️👩🔬
A comprehensive Model Context Protocol (MCP) server providing enterprise-grade Static Application Security Testing (SAST) with advanced compliance verification, multi-tenant management, AI-powered analysis, and automated remediation workflows.
dockerized-cloudsplot, CloudSploit is a security and configuration scanner that can detect hundreds of threats in your AWS account. Don't let a single misstep compromise your entire infrastructure.
Cybersecurity coursework portfolio with network scans, WLAN/BYOD security plans, incident response, and legal compliance projects.
NIST SP 800-53 Rev 5 security control mapping, gap analysis, risk scoring, and POA&M development
CaC Utility Belt. Collection and extension of parsers from GovReady for parsing SSPs and control implementation statements.
Engineering-first guide to geospatial data lineage & provenance: origin tracking, transformation audit trails, compliance mapping (GDPR, FISMA, INSPIRE, ISO 19115), and Python pipeline integration for production GIS.
Superseded early prototype. CompliNIST is now distributed as a free Docker app at complinist.com (docker pull ghcr.io/stihelc/complinist-lite:lite).
Simulated vulnerability management lab demonstrating POA&M creation, NIST 800-53 control mapping, and compliance-aligned remediation tracking for real-world vulnerabilities and cloud misconfigurations.
Enterprise security risk assessment and remediation plan aligned with NIST SP 800-53, FISMA, and PCI DSS frameworks.
SecureInfo Corporation — independent third-party profile of a public API surface, by API Evangelist. SecureInfo Corporation was a cybersecurity and information-assurance company focused on FISMA and federal compliance, surfaced as a portfolio company of insight-partners and added to the API Evangelist network as a stub for enrichment.
This project is a security assessment report. It evaluates the security framework of a Field Medical Center (FMC), identifies key compliance gaps, assigns risk ratings, proposes remediation strategies, and drafts a PCI DSS policy to address specific vulnerabilities.
To associate your repository with the fisma topic, visit your repo's landing page and select "manage topics."