Coder Social home page Coder Social logo

jasonotu / automap Goto Github PK

View Code? Open in Web Editor NEW
0.0 2.0 0.0 22 KB

AutoMap is an experiment to explore the feasibility of using Natural Language Processing (NLP) with sentence transformers to assist with security control mappings.

License: MIT License

Jupyter Notebook 100.00%

automap's Introduction

AutoMap - NLP Security Control Mapping

AutoMap is an experiment to explore the feasibility of using Natural Language Processing (NLP) with sentence transformers to assist with security control mappings.

This notebook uses the CSA CCM v4.0.7 and CIS v8 catalogs in OSCAL format. They will need to be downloaded separately due to licensing.

The best performance seems to be when using the all-mpnet-base-v2 model from Hugging Face.

Sample output:

AIS-07 maps to CISC-16
Base description: Define and implement a process to remediate application security vulnerabilities, automating remediation when possible. 
Target description: Manage the security life cycle of in-house developed, hosted, or acquired software to prevent, detect, and remediate security weaknesses before they can impact the enterprise.

DSP-17 maps to CISC-3
Base description: Define and implement, processes, procedures and technical measures to protect sensitive data throughout it's lifecycle. 
Target description: Develop processes and technical controls to identify, classify, securely handle, retain, and dispose of data.

...

automap's People

Contributors

jasonotu avatar

Watchers

Kostas Georgiou avatar  avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.