Using OSCAL to express Canadian cybersecurity requirements as compliance-as-code

The Open Security Controls Assessment Language (OSCAL) is a project led by the National Institute of Standards and Technology (NIST) that allows security professionals to express control-related information in machine-readable formats. Expressing compliance information in this way allows security practitioners to use automated tools to support data analysis, while making it easier to address downstream […]

This article has been indexed from AWS Security Blog

Read the original article: