Catalog
Browse the marketplace
Every package declares its domains, solution areas, artifact types, licence and dependencies so you can evaluate before you install.
8 packages
Clear filtersCybersecurity Core Ontology
v1.1.0nimble.cyber.core
Shared security vocabulary: controls, assets, threats, vulnerabilities, risks and evidence.
Nimble · Ontology, Validation Rules
NIST SP 800-53 Rev 5 Control Catalog (OSCAL)
v5.1.1nist.800-53r5.oscal
The full NIST security and privacy control catalog in machine-readable OSCAL form.
NIST · Instance Dataset, Reference Dataset, Compliance Mapping
NIST SP 800-171 Rev 3 Requirement Set
v3.0.0nist.800-171r3
CUI protection requirements as structured, queryable instances.
NIST · Instance Dataset, Reference Dataset
CMMC Level 2 to NIST SP 800-171 Crosswalk
v2.1.0cmmc.l2.crosswalk
Practice-by-practice mapping from CMMC Level 2 to the underlying 800-171 requirements.
DoD CIO · Compliance Mapping, Crosswalk
FedRAMP Rev 5 Baselines (OSCAL)
v5.0.2fedramp.r5.baselines
Low, Moderate and High baselines as OSCAL profiles over 800-53 Rev 5.
GSA / FedRAMP PMO · Instance Dataset, Compliance Mapping
ISO/IEC 27001:2022 Annex A Control Structure
v2022.1iso.27001.annexa
Link-only entry: obtain the standard from ISO, then load the structure locally.
ISO · Standards Mapping
PCI DSS v4.0.1 Requirement Structure
v4.0.1pci.dss4.structure
Link-only entry for PCI DSS requirements and testing procedures.
PCI Security Standards Council · Standards Mapping
SOC 2 Trust Services Criteria Structure
v2017.3soc2.tsc
Link-only entry for the AICPA Trust Services Criteria.
AICPA · Standards Mapping
