WHY OPNBYTE

From published guidance to evidenced configuration.

Security hardening guidance is everywhere: benchmarks, baselines, vendor documents, and standards. The hard part has never been finding it. The hard part is turning hundreds of pages of guidance into work that gets reviewed, prioritised, implemented, and evidenced. Opnbyte exists to close that gap.

CIS / DISA / CISA / ASD / OWASP / Microsoft / SANS

What You Will Find Here

Articles and Guides

Practical writing on security hardening: how-to guides, walkthroughs, and notes on operating systems, benchmarks, and the tooling around them. Updated as the guidance changes.

Read the Blog

Reference and Explainers

What the benchmarks, baselines and frameworks actually are: who publishes them, how CIS, DISA STIG, ASD Essential Eight and the rest differ, and which one answers the question in front of you.

Browse the Reference

Projects and Tooling

Open tooling for hardening work. SHGIR is the first project: it turns published guides into structured workbooks, and the library holds more than 600 of them. Further projects will follow.

Explore SHGIR

How the Work Goes

01Choose the Guidance
Identify which benchmark, baseline or standard applies to the system in front of you, and at which level.
02Review and Prioritise
Assess what is applicable, decide what matters most, and plan the work in phases rather than all at once.
03Implement and Track
Apply the changes, and record status, evidence and deviations as remediation progresses.
04Evidence It
Show progress over time against the frameworks you are held to. SHGIR does this today, with mappings built in.

Start with the guidance that applies to you.

The library is free. Browse it, or read the articles for how the work is done in practice.