We have migrated development of Sagacity to GitHub at https://github.com/cyberperspectives/sagacity

Sagacity is a vulnerability assessment and STIG compliance data management tool designed to make security testing more efficient, effective and complete.

Security assessments, especially those done for DoD and Federal organizations, produce tremendous amounts of scan and compliance data that security engineers must sort through and deconflict, identify untested requirements, and somehow analyze to communicate risk to their employers. Sagacity, originally written to support a government customer, was designed to fill that need.

What if an organization could turn massive amounts of irreconcilable vulnerability scan data into true knowledge and insight about their networks? They would be able to make wise decisions resulting in cost-effective actions to improve their security with the best return on investment.

Keen insight. Sound judgment. Wise decisions. Sagacity.

Features

  • ingest data from Nessus vulnerability and compliance scans, SCC, nmap, MBSA and other automated tools
  • correlate data to applicable STIG and IAVM checklists and deconflict data from multiple scan sources
  • identify required manual STIG checks for a complete compliance assessment
  • provide an efficient spreadsheet format for conducting manual tests and reporting compliance data
  • track assessed hosts, applicable STIGs, OS's, installed software, missing patches, network services and more
  • security assessment task tracking to ensure a complete and thorough test
  • a searchable database of STIGs, IAVMs, CVE, vendor advisories and RMF CCI information.

Project Samples

Project Activity

See All Activity >

License

Apache License V2.0, BSD License

Follow Sagacity

Sagacity Web Site

Other Useful Business Software
Forever Free Full-Stack Observability | Grafana Cloud Icon
Forever Free Full-Stack Observability | Grafana Cloud

Our generous forever free tier includes the full platform, including the AI Assistant, for 3 users with 10k metrics, 50GB logs, and 50GB traces.

Built on open standards like Prometheus and OpenTelemetry, Grafana Cloud includes Kubernetes Monitoring, Application Observability, Incident Response, plus the AI-powered Grafana Assistant. Get started with our generous free tier today.
Create free account
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of Sagacity!

Additional Project Details

Operating Systems

Linux, Windows

Languages

English

Intended Audience

Auditors, Government, Security, Security Professionals, Testers

User Interface

Command-line, Web-based

Programming Language

JavaScript, Perl, PHP, Unix Shell

Database Environment

MySQL

Related Categories

Unix Shell Security Software, Unix Shell Data Management System, Perl Security Software, Perl Data Management System, PHP Security Software, PHP Data Management System, JavaScript Security Software, JavaScript Data Management System

Registered

2016-10-28