Santosh Jha

Santosh Jha

A Builder in Cybersecurity
CRML

What's great

risk as a code (1)

CRML is a powerful step toward making cyber risk measurable and repeatable. By treating cyber risk as code, CRML enables security teams to move from subjective assessments to structured, version-controlled risk modeling that can evolve alongside systems.

What needs improvement

Support of More Engines would help to increase its adoption.

vs Alternatives

This is a very unique approach which haven't observe in any other solutions.

Did JSON Schema validation catch common modeling mistakes?

Yes, while formulating the language the Schema Validation did captured the modeling mistakes

Did you successfully run 10k+ Monte Carlo simulations?

Yes, I ran a monte carlo simulations on various aspects of risks.

Was the Python API well-documented and stable?

Yes, the python API were well documented and stable, making it just a simple pip install.

Ratings
Ease of use
Reliability
Value for money
Customization
8 views