#43 · Primary category: Cybersecurity & Decryption Tools

ciso-assistant-community

audit automation bsi cis compliance cybersecurity dora ebios-rm gdpr grc isms iso27001 llm mcp nis2 nist quantification risk-management security soc2

Open-source GRC platform for risk management, compliance, and audit with 150+ frameworks and automatic control mapping.

Project last updated:08/29/26

GitHub Stars

4.4K

Forks

824

Contributors

117

License

Other

Why we included this project

Managing compliance across multiple frameworks usually means duplicating the same evidence for each standard. CISO Assistant is a self-hosted GRC platform that pulls risk management, audit, third-party risk, business impact analysis, and privacy into one workspace, and it maps controls automatically across more than 150 frameworks, including ISO 27001, NIST CSF, SOC 2, and NIS2. It deliberately separates compliance from the underlying security controls, so the same control evidence can be reused for different standards instead of being re-entered each time. The API-first design lets you script assessments and reporting or feed compliance data into your existing dashboards, which is handy for teams that already have security tooling. If you are still tracking controls in spreadsheets, this is a credible open-source option to evaluate.

Articles for this project

No articles for this project yet.

To suggest a topic or contribute an article, contact us.

Related projects in this category