817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0
Nist Csf GitHub Repositories
Explore popular GitHub repositories tagged “nist-csf”.
Compare stars, forks, and programming language using the same GitStar view as GitHub Trending.
Trending Repositories
Claude Skills for Governance, Risk, & Compliance (GRC): Expert-level compliance guidance for ISO 27001, SOC 2, FedRAMP, GDPR, HIPAA, NIST CSF, PCI DSS, EU AI Act, ISO 42001, ISO 27701, DORA, CSRD, India's DPDPA, CMMC 2.0, NIST AI Risk, SWIFT, CCPA/CPRA, and others. Benchmark 93% (with skills) vs 79% (without skills). Updated Monthly.
Security compliance platform - SOC2, CMMC, ASVS, ISO27001, HIPAA, NIST CSF, NIST 800-53, CSC CIS 18, PCI DSS, SSF tracking
Run individual controls or full compliance benchmarks for CIS, PCI, NIST, HIPAA and more across all of your AWS accounts using Powerpipe and Steampipe.
An open-source listing of cybersecurity technology mapped to the NIST Cybersecurity Framework (CSF)
🔥A modern, all-in-one Governance, Risk & Compliance (GRC) solution designed for privacy, security, and compliance teams. As an open-source alternative to Vanta and Drata, this platform empowers teams with full control, flexibility, and transparency—no vendor lock-in, just powerful compliance automation and risk management. ISO27k, GDPR, SOC2, NIST
Free, open-source tool to build a NIST CSF 2.0 Current Profile and gap analysis from an organization's documents (AI-assisted, human-validated, runs offline).
NIST Cybersecurity Framework (CSF) Profile Assessment Tool - Track controls, assign ownership, document findings, score security states, and export for visualization
No repository description provided.
ISMS CORE - Compliance Operations, Risk & Evidence
Overview of existing mappings from and to cyber security controls
A structured knowledge base of cybersecurity and information security standards, frameworks, best practices, and guidelines. Covers key resources such as NIST, ISO/IEC, OWASP, CIS, ISC2, ISACA, and more — to support professionals, students, and organizations in building a solid foundation for secure systems, compliance, and risk management.
𝟰𝟱 𝗽𝗿𝗼𝗱𝘂𝗰𝘁𝗶𝗼𝗻-𝗴𝗿𝗮𝗱𝗲 𝗚𝗥𝗖 𝗽𝗿𝗼𝗺𝗽𝘁𝘀 𝗮𝗰𝗿𝗼𝘀𝘀 𝟭𝟯 𝗱𝗼𝗺𝗮𝗶𝗻𝘀. ISO 42001, ISO 27001, EU AI Act, NIST AI RMF, GDPR, DORA and more. Career and startup prompts no other GRC library has. Works with Claude, GPT-4o and Gemini. 𝗥𝗮𝘁𝗲𝗱 𝟵.𝟱/𝟭𝟬 𝗢𝗻 𝗨𝘀𝗮𝗯𝗶𝗹𝗶𝘁𝘆 𝗮𝗻𝗱 𝗣𝗿𝗮𝗰𝘁𝗶𝗰𝗮𝗹 𝗔𝗽𝗽𝗹𝗶𝗰𝗮𝘁𝗶𝗼𝗻
Comprehensive OT/ICS (Operational Technology & Industrial Control Systems) Security Notes covering SCADA, PLCs, DCS, IEC 62443, NIST CSF, ICS attack techniques, incident response, security best practices, and certification preparation.
A mock security incident report done as part of Cybersecurity documentation portfolio and Google's Coursera Cybersecurity Certificate.
Open-source, test-backed Wazuh rules mapped to the NIST Cybersecurity Framework 2.0 — filling the gap between detection logic and compliance evidence.
Comprehensive NIST CSF-aligned security policy templates for SMBs. Ready-to-use policies covering incident response, data protection, infrastructure security, and compliance requirements with practical implementation guidance and deployment timelines.
The NIST Cybersecurity Framework 2.0 outlines steps to be taken by the industry, governement agencies, and small businesses in organization risk management.
Governance, Risk & Compliance documentation aligned to FedRAMP Moderate, NIST SP 800-53 Rev. 5, DoD RMF, and NIST AI RMF. Includes policies, risk register, vendor assessment, continuous monitoring, vulnerability management, and AI governance materials.
Prove your compliance posture with automated evidence and clear visualization. Open-source, OSCAL-native evidence collection from 30+ platforms with self-hosted/air-gapped deployment support.
Self hosted cybersecurity tabletop exercise platform with AI driven scenario generation, live facilitation, scoring, structured debriefs, RBAC, TOTP MFA, and Docker Compose deployment.
Git Repo for Spring 2017
Open-source hunt playbooks and a policy-driven Sentinel reference framework for detecting runaway AI agents, unauthorized tool calls, behavioral drift, DNS exfiltration, and poisoned MCP tools. MITRE ATLAS mapped.
Open source regulatory radar for financial services compliance teams. Monitors BoE, FCA, MAS, SEC, and ESMA, mapping publications to six control frameworks with a cryptographic audit trail.
OLIR mappings & OSCAL content
Top Level Cyber Threat Clusters Reference
Nisify is a NIST CSF 2.0 compliance evidence aggregation tool that automatically collects technical evidence from 13 cloud platforms, maps it to the 106 NIST controls alongside your manual governance documents, and provides a transparent, real-time dashboard for measuring compliance maturity and tracking gaps.