15 packages in this domain

MITRE ATT&CK Enterprise (STIX 2.1)

v17.1

mitre.attack.enterprise

Adversary tactics, techniques and mitigations as a threat knowledge graph.

CybersecurityCritical Infrastructure
MITRE-TERMS3,560

MITRE · Ontology Mapping, Instance Dataset, Reference Dataset

Cybersecurity Core Ontology

v1.1.0

nimble.cyber.core

Shared security vocabulary: controls, assets, threats, vulnerabilities, risks and evidence.

Nimble CoreCybersecurity
Apache-2.03,110

Nimble · Ontology, Validation Rules

NIST SP 800-53 Rev 5 Control Catalog (OSCAL)

v5.1.1

nist.800-53r5.oscal

The full NIST security and privacy control catalog in machine-readable OSCAL form.

Cybersecurity
US-GOV-PD2,740

NIST · Instance Dataset, Reference Dataset, Compliance Mapping

NIST SP 800-171 Rev 3 Requirement Set

v3.0.0

nist.800-171r3

CUI protection requirements as structured, queryable instances.

CybersecurityDefense & Aerospace
US-GOV-PD2,210

NIST · Instance Dataset, Reference Dataset

CMMC Level 2 to NIST SP 800-171 Crosswalk

v2.1.0

cmmc.l2.crosswalk

Practice-by-practice mapping from CMMC Level 2 to the underlying 800-171 requirements.

CybersecurityDefense & Aerospace
US-GOV-PD1,880

DoD CIO · Compliance Mapping, Crosswalk

NVD CVE Reference Dataset (sample)

v2026.02

nvd.cve.reference

Sample CVE and CVSS records for vulnerability-management twins.

Cybersecurity
US-GOV-PD1,720

NIST · Analysis Notebook, Reference Dataset

MITRE D3FEND Countermeasure Ontology

v1.3.0

mitre.d3fend

Defensive technique ontology that pairs with offensive ATT&CK knowledge.

Cybersecurity
MITRE-TERMS1,490

MITRE · Ontology

FedRAMP Rev 5 Baselines (OSCAL)

v5.0.2

fedramp.r5.baselines

Low, Moderate and High baselines as OSCAL profiles over 800-53 Rev 5.

Cybersecurity
US-GOV-PD1,350

GSA / FedRAMP PMO · Instance Dataset, Compliance Mapping

UAV Cybersecurity Pack

v1.0.0

nimble.uav.cyber

Threats, controls and validation rules for uncrewed platforms.

CybersecurityCritical InfrastructureDefense & Aerospace+1
Apache-2.01,340

Nimble · Ontology Extension, Validation Rules, Compliance Mapping

CISA Zero Trust Maturity Model 2.0

v2.0.0

cisa.zero-trust.maturity

Pillars, functions and maturity stages as an assessable model.

CybersecurityCritical Infrastructure
US-GOV-PD1,290

CISA · Ontology, Inference Rules

STIX 2.1 Threat Intelligence Alignment

v2.1.0

oasis.stix21.alignment

Maps STIX 2.1 domain objects onto Nimble threat concepts.

Cybersecurity
CC-BY-SA-4.0980

OASIS Open · Ontology Alignment, Example Instances

Water Infrastructure Cybersecurity Pack

v1.0.0

nimble.water.ics.cyber

Cross-domain pack: OT/ICS security for water and wastewater utilities.

CybersecurityManufacturing & IndustrialCritical Infrastructure
CC-BY-4.0780

Nimble · Ontology Extension, Validation Rules, Compliance Mapping

ISO/IEC 27001:2022 Annex A Control Structure

v2022.1

iso.27001.annexa

Link-only entry: obtain the standard from ISO, then load the structure locally.

Cybersecurity
PROPRIETARY Source required760

ISO · Standards Mapping

PCI DSS v4.0.1 Requirement Structure

v4.0.1

pci.dss4.structure

Link-only entry for PCI DSS requirements and testing procedures.

Cybersecurity
PROPRIETARY Source required620

PCI Security Standards Council · Standards Mapping

SOC 2 Trust Services Criteria Structure

v2017.3

soc2.tsc

Link-only entry for the AICPA Trust Services Criteria.

Cybersecurity
PROPRIETARY Source required540

AICPA · Standards Mapping