Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

MyOpenCRE: allow for mapping CREs to a standard automatically #585

Open
northdpole opened this issue Feb 22, 2025 · 0 comments
Open

MyOpenCRE: allow for mapping CREs to a standard automatically #585

northdpole opened this issue Feb 22, 2025 · 0 comments
Labels
enhancement New feature or request GSOC this feature is a potential Google Summer of Code candidate
Milestone

Comments

@northdpole
Copy link
Collaborator

MyOpenCRE is a nifty addition to the project that allows users to add their own mappings.
Using MyOpenCRE, users can download a CSV of all existing CREs, then map their own standard sections/subsections and finally re-upload for processing.

Mapping standards to CREs is a time consuming process. Instead we could use a bit of generative AI to do the mapping ourselves.
This feature would use a combination of AI techniques to derive highly accurate mappings between a CRE and the described information of the control of a Standard.

Stretch goal: If a mapping is not possible automatically or if a CRE does not exist for that mapping, the application should identify the controls for which a mapping could not be produced

Example Outcome: MyOpenCRE can map automatically the following standards:

  • PCI-DSS
  • DORA
  • SOC2

Stretch goal example outcome: MyOpenCRE can partially map the OWASP AI Exchange and the top 10 for LLMs while identifying the controls that require human intervention or the release of new CREs.

@northdpole northdpole added enhancement New feature or request GSOC this feature is a potential Google Summer of Code candidate labels Feb 22, 2025
@northdpole northdpole added this to the MyOpenCRE milestone Feb 22, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request GSOC this feature is a potential Google Summer of Code candidate
Projects
None yet
Development

No branches or pull requests

1 participant