🚨ATTENTION🚨 The NIST 800-53 mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here as an archive.
-
Updated
Apr 3, 2024 - Python
🚨ATTENTION🚨 The NIST 800-53 mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here as an archive.
Six security outcomes an enterprise must achieve to run AI agents, and the controls that evidence them. A draft for public comment.
Universal check identifier system for cross-framework security control mapping
Practitioner-led AI security control framework: 57 controls across 12 NIST AI 600-1 GenAI risk domains, mapped to MITRE ATLAS, in three tiers. Vendor-agnostic, CC BY 4.0.
Hands-on cybersecurity projects focused on network security monitoring, threat analysis, and implementing defensive security controls.
An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about Security Assessments in Cybersecurity.
Map ransomware-relevant MITRE ATT&CK techniques to MITRE D3FEND defensive patterns and Platform0-style control tests, with a small data model, resolver CLI, and example kill chain.
Runtime-agnostic policy framework for AI agents. Mechanical security controls: three-tier action model, approval artefacts, hash-chained audit, prompt-injection defence.
AWS Continuous Compliance Automation Framework for automated control validation, evidence collection, risk scoring, remediation guidance, and audit-ready reporting across AWS security services.
Secure Azure FastAPI deployment lab demonstrating cloud security, IAM, Key Vault, HTTPS, logging, threat modeling, Terraform, and GitHub Actions.
AAEF: An Action Assurance Control Profile for Agentic AI Systems.
Safety-first reference implementation for AI-assisted vulnerability assessment control boundaries
A beginner Python cyber security project that creates a simple risk register using likelihood, impact and recommended controls.
Add a description, image, and links to the security-controls topic page so that developers can more easily learn about it.
To associate your repository with the security-controls topic, visit your repo's landing page and select "manage topics."