<?xml version="1.0" encoding="utf-8" standalone="yes"?><feed xmlns="http://www.w3.org/2005/Atom"><title>Automation on Sinetris's viewpoints</title><id>https://sinetris.info/categories/automation/</id><link href="https://sinetris.info/categories/automation/index.atom.xml" rel="self" type="application/atom+xml" hreflang="en" title="Automation on Sinetris's viewpoints"/><link href="https://sinetris.info/categories/automation/" rel="alternate" type="text/html" hreflang="en" title="Automation on Sinetris's viewpoints"/><link href="https://sinetris.info/categories/automation/index.atom.xml" rel="alternate" type="application/atom+xml" hreflang="en" title="Automation on Sinetris's viewpoints"/><link href="https://sinetris.info/categories/automation/index.rss.xml" rel="alternate" type="application/rss+xml" hreflang="en" title="Automation on Sinetris's viewpoints"/><subtitle>Recent content in Automation on Sinetris's viewpoints</subtitle><generator uri="https://github.com/sinetris/sine-die/">Sine Die theme for Hugo</generator><author><name>Duilio Ruggiero</name><email>duilio@sinetris.info</email></author><rights type="html">&amp;copy; 2023 - 2026, Duilio Ruggiero</rights><updated>2025-03-17T10:45:42Z</updated><entry><title>Compliance as Code</title><link href="https://sinetris.info/topics/iam/grc/compliance-as-code/" rel="alternate" type="text/html" hreflang="en" title="Automation on Sinetris's viewpoints"/><content src="https://sinetris.info/topics/iam/grc/compliance-as-code/" type="text/html"/><published>2025-03-17T10:45:42+00:00</published><updated>2025-03-17T10:45:42Z</updated><id>https://sinetris.info/topics/iam/grc/compliance-as-code/#atom</id><summary type="html">&lt;h2 id="standards"&gt;Standards&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;
&lt;a href="https://scap.nist.gov/" rel="external"&gt;SCAP&lt;/a&gt;: Security Content Automation Protocol&lt;/li&gt;
&lt;li&gt;
&lt;a href="https://pages.nist.gov/OSCAL/" rel="external"&gt;OSCAL&lt;/a&gt;: Open Security Controls Assessment Language&lt;/li&gt;
&lt;li&gt;
&lt;a href="https://www.omg.org/spec/BPMN" rel="external"&gt;BPMN&lt;/a&gt;: Business Process Model and Notation&lt;/li&gt;
&lt;li&gt;
&lt;a href="https://www.omg.org/spec/DMN" rel="external"&gt;DMN&lt;/a&gt;: Decision Model and Notation&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="guidelines"&gt;Guidelines&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;
&lt;a href="https://complianceascode.readthedocs.io/" rel="external"&gt;ComplianceAsCode&lt;/a&gt;: The ComplianceAsCode project
&lt;blockquote&gt;
&lt;p&gt;Previously known as SCAP Security Guide (SSG)&lt;/p&gt;
&lt;/blockquote&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="tools"&gt;Tools&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;
&lt;a href="https://www.open-scap.org/" rel="external"&gt;OpenSCAP&lt;/a&gt;: open source security compliance toolkit
&lt;blockquote&gt;
&lt;p&gt;NIST certified for SCAP 1.2&lt;/p&gt;
&lt;/blockquote&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;a href="https://github.com/IBM/compliance-trestle" rel="external"&gt;Trestle&lt;/a&gt;: Manage compliance as code using NIST&amp;rsquo;s OSCAL standard&lt;/li&gt;
&lt;li&gt;
&lt;a href="https://www.openpolicyagent.org/" rel="external"&gt;Open Policy Agent (OPA)&lt;/a&gt;: Declarative Policies
&lt;blockquote&gt;
&lt;p&gt;Context-aware, Expressive, Fast, Portable&lt;/p&gt;
&lt;/blockquote&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;a href="https://github.com/permitio/opal" rel="external"&gt;OPAL&lt;/a&gt;: Open Policy Administration Layer&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="good-reads-and-presentations"&gt;Good reads and presentations&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;
&lt;a href="https://pages.nist.gov/OSCAL/learn/presentations/mini-workshop/" rel="external"&gt;OSCAL Mini Workshop Series&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;</summary><category term="/types/topic" label="type: topic"/><category term="/categories/grc" label="category: GRC"/><category term="/categories/automation" label="category: Automation"/><category term="/tags/compliance" label="tag: Compliance"/><category term="/tags/compliance-as-code" label="tag: Compliance as Code"/><category term="/tags/scap" label="tag: SCAP"/><category term="/tags/oscal" label="tag: OSCAL"/><category term="/tags/opa" label="tag: OPA"/></entry></feed>