Layer for static code analysis and security hardening
-
Updated
Dec 11, 2025 - BitBake
Layer for static code analysis and security hardening
FAANG (MANGA) Security Engineer Interview Collection. An ongoing & curated collection of awesome software, frameworks and libraries, learning tutorials and videos, technical guidelines and best practices, and cheatsheets in the world of Security Engineering Career.
This repository contains a collection of PowerShell tools that can be utilized to protect and defend an environment based on the recommendations of multiple cyber security researchers at Microsoft. These tools were created with a small to medium size enterprise environment in mind as smaller organizations do not always have the type of funding a…
A multi-layered prompt injection detection system built with Laravel.
Threat-oriented defensive frameworks reorganizing PCI DSS v4.0.1 requirements by attack type rather than compliance checklist. Educational guide for security professionals implementing strategic layered defense.
Breach probability simulator for CISOs. Quantifies defense-in-depth effectiveness using Poisson modeling. SOC aesthetic, risk quantification dashboard.
A DDoS-resilient, two-tier architecture for web applications in the AWS cloud.
Zero Trust Networking with VPC Security + AWS WAF – AWS CSS (SCS-C02) Domain 3 Lab
A real-world, open-source Defense-in-Depth security framework built through CI/CD in production by security professionals.
Focused on solving common security vulnerabilities (e.g. Numeric/Buffer Over/Under flows and SQL Injection) found in software and writing secure code to mitigate risks to software and data.
Zero-Trust access for self-hosted cloud behind Cloudflare: proxied DNS, edge mTLS (client cert + serial allowlist), Cloudflare Access (OTP), egress-only Tunnel → Nginx, Docker-segmented cloud. Deny-by-default, least-privilege, with clear tests and rollback.
LLM security firewall for risk reduction in human/LLM interfaces. Hexagonal microservice architecture (4 services) with pattern-based detection of code execution intents, manipulation attempts, and policy violations. Beta status. No complete protection possible (OWASP LLM01).
Add a description, image, and links to the defense-in-depth topic page so that developers can more easily learn about it.
To associate your repository with the defense-in-depth topic, visit your repo's landing page and select "manage topics."