Security and Compliance does not always require endless spreadsheets, PDFs, Docs and manual tasks. In this session we explore how the MITRE Security Automation Framework (SAF) can support use cases which require a standardized, automated compliance pipeline. An approach to be able to scale with the infrastructure and remove human errors.
We will walk you through a use case auditing an environment which needs to fulfill special security requirements by extending VMware DISA STIG compliance checks.
You will be introduced to a framework built on open source tooling.
Your takeaways: - Understanding of MITRE SAF - How to extend existing STIG profiles - A live demo of a framework built on open source toolsets