Skip to content
@Hack23

www.hack23.com

Development of Secure Open Source Software Applications and Tools.

🔒 Hack23 - Open Source Security & Compliance Tools

🔐 CIA Compliance Manager

CIA Compliance Manager Logo

Security assessment platform for the CIA triad (Confidentiality, Integrity, Availability) with business impact analysis and compliance mapping to regulatory frameworks like NIST, ISO, GDPR, HIPAA, and SOC2.

🔍 Citizen Intelligence Agency

CIA Logo

Political transparency platform monitoring Swedish political activity with data-driven insights, analytics, dashboard visualizations, and accountability metrics.

☁️ Lambda in Private VPC

AWS Lambda

Enterprise-grade multi-region active/active architecture with near-zero recovery time, comprehensive DNS failover, and AWS Resilience Hub policy compliance for mission-critical applications.

🧪 Sonar-CloudFormation-Plugin

SonarQube Plugin

SonarQube plugin for analyzing AWS CloudFormation templates with security best practices based on NIST, CWE, and ISO standards.

🏛️ CIA Compliance Manager Documentation

Current Architecture

Future Vision

🏛️ Citizen Intelligence Agency Documentation

Current Architecture

Future Vision & Operations

🔑 Security Focus Areas

Loading
%%{
  init: {
    'theme': 'base',
    'themeVariables': {
      'primaryColor': '#d1c4e9',
      'primaryTextColor': '#1a1a1a',
      'primaryBorderColor': '#9575cd',
      'lineColor': '#9575cd',
      'secondaryColor': '#c8e6c9',
      'tertiaryColor': '#bbdefb'
    }
  }
}%%
mindmap
  root((CIA Triad<br>Security Focus))
    Confidentiality
      ::icon(fa fa-lock)
      Data Classification
        ::icon(fa fa-tag)
        Public
        Restricted
        Confidential
        Secret
      Access Control
        ::icon(fa fa-shield)
        RBAC Implementation
        MFA Integration
        Least Privilege
      Encryption
        ::icon(fa fa-key)
        AES-256
        Quantum-Safe Encryption
        KMS Integration
    Integrity
      ::icon(fa fa-check-circle)
      Data Validation
        ::icon(fa fa-check)
        Manual Checks
        Automated Validation
        Blockchain Records
      Change Control
        ::icon(fa fa-history)
        Audit Trails
        Versioning
        Non-Repudiation
      Quality Assurance
        ::icon(fa fa-certificate)
        Code Analysis
        Test Coverage
        SLSA Level 3
    Availability
      ::icon(fa fa-clock-o)
      Resilience Levels
        ::icon(fa fa-line-chart)
        Backup/Restore
        Pilot Light
        Warm Standby
        Multi-Site Active/Active
      Recovery Metrics
        ::icon(fa fa-tachometer)
        RTO Targets
        RPO Objectives
        Uptime SLAs
      Monitoring
        ::icon(fa fa-eye)
        Health Checks
        Alerting
        Chaos Testing

🌟 Featured in Press & Media

🗞️ Computer Sweden

Featured article on innovative use of technology for political transparency

Read Article

📰 Riksdag och Departement

Coverage on Citizen Intelligence Agency's monitoring capabilities

Read Article

📊 National Democratic Institute

Recognized in survey of parliamentary monitoring organizations

View Report

🎤 Technical Talks & Presentations

🎙️ Javaforum Göteborg

Presentation on secure architecture patterns

Watch Presentation

🎙️ Shift Left Like A Boss

Security podcast guest appearance discussing DevSecOps

Listen to Podcast

💼 About James Pether Sörling

Loading
%%{
  init: {
    'theme': 'base',
    'themeVariables': {
      'primaryColor': '#a0c8e0',
      'primaryTextColor': '#1a1a1a',
      'primaryBorderColor': '#86b5d9',
      'lineColor': '#86b5d9',
      'secondaryColor': '#c8e6c9',
      'tertiaryColor': '#ffda9e'
    }
  }
}%%
mindmap
  root((James Pether<br>Sörling))
    Security Architecture
      ::icon(fa fa-lock)
      CIA Triad Implementation
      Zero Trust Architectures
      AWS Security Services
      Compliance Frameworks
        NIST 800-53
        ISO 27001
        GDPR
    Cloud Engineering
      ::icon(fa fa-cloud)
      Multi-Region Architectures
      Resilience Engineering
      Private VPC Security
      CloudFormation/Terraform
    Software Development
      ::icon(fa fa-code)
      Java & Spring
      React & TypeScript
      PostgreSQL
      CI/CD Automation
    Open Source Leadership
      ::icon(fa fa-github)
      CIA Compliance Manager
      Citizen Intelligence Agency
      Sonar-CloudFormation-Plugin
      cfn-nag Contributor

Experienced technology professional specializing in information security and delivery of secure cloud systems. Strong advocate for transparency in organizations and committed to ensuring robust security posture for modern applications through open source solutions.

📫 Connect

LinkedIn GitHub Blog Tech Talks

Last updated: 2025-05-13 08:23:39

Pinned Loading

  1. cia Public

    Comprehensive open-source intelligence platform analyzing Swedish political activities using AI and data visualization. Tracks politicians, government institutions, and parliamentary data, offering…

    Java 168 46

  2. sonar-cloudformation-plugin Public archive

    Sonarqube cloudformation plugin, IaC security supports cfn-nag/checkov

    Java 26 9

Repositories

Showing 10 of 12 repositories
  • cia Public

    Comprehensive open-source intelligence platform analyzing Swedish political activities using AI and data visualization. Tracks politicians, government institutions, and parliamentary data, offering detailed insights, performance metrics, and advanced analytics.

    Java 168 Apache-2.0 46 2 1 Updated May 13, 2025
  • cia-compliance-manager Public

    The CIA Compliance Manager is an application that helps organizations assess and manage the availability, integrity, and confidentiality of their systems and data based on customizable security levels, providing real-time cost estimates, business impact assessments, and technical implementation details.

    TypeScript 5 Apache-2.0 3 1 0 Updated May 13, 2025
  • lambda-in-private-vpc Public

    A highly available system that runs in multiple AWS regions at the same time. It uses AWS Resilience Hub to ensure compliance with policies for Recovery Time Objective (RTO) and Recovery Point Objective (RPO)

    3 Apache-2.0 1 1 0 Updated May 13, 2025
  • .github Public
    2 0 0 0 Updated May 13, 2025
  • homepage Public

    Webpage for org https://hack23.com

    HTML 2 Apache-2.0 1 1 0 Updated May 9, 2025
  • sonar-cloudformation-plugin Public archive

    Sonarqube cloudformation plugin, IaC security supports cfn-nag/checkov

    Java 26 LGPL-3.0 9 1 5 Updated Oct 4, 2024
  • ciamavenrepo Public archive
    1 0 0 0 Updated Aug 2, 2024
  • talks Public archive

    How to secure your development pipeline with static application security test (SAST) / Dynamic application security test (DAST), software composition analysis (SCA) using Sonarqube.

    6 0 1 1 Updated May 8, 2023
  • templateopensource Public template

    template for creation of open source project following community stanards and OpenSSF

    2 Apache-2.0 0 0 0 Updated Jan 30, 2023
  • riksdagsmonitor Public archive
    HTML 1 Apache-2.0 0 0 0 Updated Dec 26, 2022