There are 0 repository under mitre-inspec topic.
A command-line and ruby API of utilities, converters and tools for creating, converting and processing security baseline formats, results and data
InSpec profile to validate your VPC to the standards of the CIS Amazon Web Services Foundations Benchmark
(WIP) An ansible playbook to harden a docker host to the CIS CE Benchmark requirements
(WIP) A terraform / kitchen-terraform hardening baseline for the cis-aws-foundations-baseline
Heimdall Lite 2.0 is a JavaScript based security results viewer and review tool supporting multiple security results formats, such as: InSpec, SonarQube, OWASP-Zap and Fortify which you can load locally, from S3 and other data sources.
(WIP) CIS Microsoft Azure Foundations Benchmark
InSpec profile for Microsoft Windows 10, against DISA's Microsoft Windows 10 Security Technical Implementation Guide (STIG) Version 1, Release 19
Microsoft Windows Server 2019 STIG InSpec Profile
A micro InSpec baseline to check for insecure or public s3 buckets in your VPC
InSpec profile to validate the secure configuration of Canonical Ubuntu 16.04 LTS against DISA's Canonical Ubuntu 16.04 LTS Security Technical Implementation Guide (STIG) Version 1 Release 1.
A Mongo-based version of Heimdall (Deprecated)
Nginx Baseline - InSpec Profile
(deprecated) A refactor of the heimdall-lite project using vue, see:
Ansible role for Red Hat 7 STIG Baseline
InSpec profile to validate the secure configuration of Ubuntu 20.04, against DISA's Canonical Ubuntu 20.04 LTS Security Technical Implementation Guide (STIG) Version 1, Release 6.
Inspec profile to validate security settings of Archer to the RSA Archer Security Guidance
WIP Ansible playbook for hardening a tomcat instance to the CIS Tomcat Benchmark v1.0.1
(WIP) (Alpha) InSpec profile for CIS Apache Tomcat v8 Benchmark
(WIP) (ALPHA) Compliance Mapper is a web-based rest-api and application for information assurance control mapping
CIS Docker Community Edition Benchmark InSpec Profile
InSpec profile to validate the secure configuration of Red Hat Enterprise Linux 6, against DISA's Red Hat Enterprise Linux 6 Security Technical Implementation Guide (STIG) Version 1, Release 21.
V1: We have updated this course - please see https://github.com/mitre/inspec-developer
A Chef recipe to help harden your Ubuntu box to the STIG standards
ALPHA WIP This chef cookbook provides secure nginx configurations.
DEMO: A kitchen-terraform based example of building and validating AWS security settings
Documentation, templates and other useful tidbits for developing and maintaining code with the MITRE InSpec Team
A single page java-script implementation of the MITRE Heimdall InSpec results viewer
Inspec Profile for the JRE 8 STIG
THIS CONTENT HAS BEEN MIGRATED TO https://github.com/mitre/saf-training. The MITRE InSpec Team's introduction to InSpec Profile Development
A small install guide for installing inspec
InSpec profile to validate the secure configuration of Oracle MySQL Enterprise Edition version 5.7, against CIS's Oracle MySQL Enterprise Edition 5.7 CIS Benchmark.
This repository includes example step functions for automating SAF tools in a workflow.