SecTemplates is a repository of free templates and resources for information security professionals and startup engineering teams to establish and improve their security programs. The platform provides: 1. Preparation checklists 2. Runbooks 3. Program and process templates 4. Security metrics guidelines 5. Document templates The site covers various security domains, including: - Bug Bounty Program setup - External Penetration Testing processes - Incident Response program establishment - Vulnerability Management program implementation - Security Exceptions program creation Content is freely available for personal and commercial use, with specific licensing restrictions on product development and resale.
FEATURES
SIMILAR TOOLS
A comprehensive guide for system administrators to detect and identify potential security threats on Windows 2000 systems.
BPF+ is a generalized packet filter framework that achieves both high-level expressiveness and good performance for network monitoring and intrusion detection applications.
A comprehensive guide to securing Industrial Control Systems (ICS) from cyber threats, published by NIST.
A Microsoft framework for secure and efficient sharing of cybersecurity information between trusted parties to reduce cybersecurity risks.
A comprehensive reference guide to Nmap's scripting engine and its various options, scripts, and target specifications.
A structured approach to managing and responding to suspected security events or incidents.
A comprehensive cheat sheet for using JtR (John the Ripper), a password cracking tool.
A comprehensive cheat sheet for Windows and Linux terminals and command lines, covering essential commands and syntax for various tasks.
A comprehensive resource for threat hunting in Active Directory environments, covering tracking command-line/PowerShell activity, Kerberoasting detection, auditing attacker activity, and monitoring enterprise command-line activity.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.