opencompliance / guide

0 stars 0 forks source link

Create list of security-related orgs #1

Open lukefretwell opened 8 years ago

gregelin commented 8 years ago

Security

ORG Description
http://www.cisecurity.org
https://www.us-cert.gov
https://niccs.us-cert.gov
http://www.dhs.gov/science-and-technology/cyber-security-division
http://www.isaca.org/ The Information Systems Audit and Control Association (ISACA) got its start in 1967 (via NovaInfoSec )
https://nccoe.nist.gov The National Cybersecurity Center of Excellence (NCCoE) at the National Institute of Standards and Technology (NIST) works with members of industry to identify broad cybersecurity challenges. We seek problems with solutions that benefit an entire sector, or multiple sectors.
http://sdccoe.org The Cyber Center of Excellence is a non-profit organization formed to accelerate job and economic growth in the cyber community. This organization is driven by a collection of world-class cyber companies who have operations located in San Diego.
http://iase.disa.mil/Pages/index.aspx Part of http://disa.mil and a clearing house for STIGs, SRG, and government cyber security training
http://www.garp.com/#!/home Global Association of Risk Professionals
http://algaonline.org Association of Local Government Auditors "We provide information to assist our members, whether they are audit directors, managers, or staff, in conducting financial or performance audits."
https://www.fedramp.gov
https://www.issa.org Information System Security Association

Compliance

ORG Description
http://bitly.com/DevOpsAudit Google Plus community "Define the authoritative guidance of how management and auditors should conduct audits where DevOps practices are in place..."
http://complianceatvelocity.com Medium Blog DevOps and Compliance
https://www.fismacenter.com "The FISMA Center qualifies experts on their knowledge of FISMA and designates individuals as Certified FISMA Compliance Practitioners based on a comprehensive assessment of their abilities."
http://www.sigsac.org ACM Special Interest Group on Security, Audit and Control (SIGSAC)
https://www.owasp.org/index.php/Main_Page the free and open software security community
IETF working group get details
https://oval.mitre.org/community/board/ "The Board’s primary responsibilities are to work with the Moderator and the Community to define OVAL, to provide input into OVAL’s strategic direction, and to advocate OVAL in the Community."
http://csrc.nist.gov/index.html "The Computer Security Division's (CSD) Computer Security Resource Center (CSRC) facilitates broad sharing of information security tools and practices, provides a resource for information security standards and guidelines, and identifies key security web resources to support users in industry, government, and academia. CSRC is the primary gateway for gaining access to NIST computer security publications, standards, and guidelines plus other useful security-related information."
http://www.cdse.edu Education in security from DOD.
https://www.cnss.gov/cnss/ Committee on National Security Systems "The CNSS provides a unique and essential leadership and coordination role among Federal departments and agencies to meet the cyber challenges facing our Nation today and in the future."

Other Links

ORG Description
https://www.novainfosec.com/resources/infosec-organizations/ List of InfoSec Organizations
http://www.auditnet.org/audit-library/professional-associations List of professional organizations for auditors