Skip to content
MITRE SAF™

Security Automation Tools

The MITRE Security Automation Framework™ provides a comprehensive suite of open-source tools to support every phase of the security automation lifecycle. From planning and authoring security requirements to validating controls and visualizing results, SAF tools enable teams to build, test, and maintain secure systems efficiently.
Getting Started

Choose Your Starting Point

Jump in at any phase of the security automation lifecycle based on your current needs and maturity level.

New to Security Automation?

Start by validating your systems with existing InSpec profiles, then visualize the results in Heimdall.

Already Running Security Scans?

Use SAF CLI to convert your existing security tool outputs (Nessus, SonarQube, etc.) into a common format.

Creating Custom Requirements?

Use Vulcan to author security guidance documents, then generate InSpec profiles from your requirements.

MITRE Security Automation Framework (MITRE SAF) is a trademark of The MITRE Corporation. Released under the Apache 2.0 License.