unsubbed.co

Openlane

Self-hosted cybersecurity tools tool that provides comprehensive platform for automating compliance workflows.

Overview

Open source compliance automation for SOC 2, GDPR, ISO27001, NIST 800-53, and more This repository houses the core server and orchestration elements which are at the heart of the Openlane cloud service. Sign up for an account today (no credit card required) and try it out! The project has 225 GitHub stars and is licensed under Apache-2.0.

Key Features

Source: GitHub README

  • Creation of new programs that include pre-built templates, controls, risks, etc., for standards like SOC2, ISO27001, NIST800-53, and more
  • Automated Task assignments and configurable workflows with task reminders and escalation
  • Evidence upload, approval processes, and other configurable automation to get you through your audits
  • Robust user and group management with a myriad of RBAC controls / toggles to ensure individuals in your company see what they are supposed to see
  • Multiple authentication methods and organization-level controls for authorized domains including organization-wide SSO
  • Automated domain scanning with assets and other resources created automatically for your approval
  • Questionnaire creation, customization, and automation for easier internal and external interactions with your staff, auditors, and vendors
  • Notification customizations, channel definitions, comments and histories on all your objects
  • Easy to use documentation editors and storage for Policies and Procedures, or whatever documentation is needed

Getting Started

Source: GitHub README

Setup Taskfile by following the instructions and using one of the various convenient package managers or installation scripts. After installation, you can then simply run task install to load the associated dependencies. Nearly everything in this repository assumes you already have a local golang environment setup so this is not included. Please see the associated documentation.

Normalized Features

Source: tool-features-normalized.json

brew, docker, graphql, kubernetes, postgresql, rest api, sso, two factor auth.

Features

Authentication & Access

  • Single Sign-On (SSO)
  • Two-Factor Authentication

Integrations & APIs

  • GraphQL API
  • REST API