STIG Process Modeling
Manage the complete workflow between vendors and sponsors for STIG creation
Streamline the creation of STIG documentation and InSpec validation profiles
docker pull mitre/vulcan:latest
docker run -p 3000:3000 mitre/vulcan:latest# Clone the repository
git clone https://github.com/mitre/vulcan.git
cd vulcan
# Generate secure configuration
./setup-docker-secrets.sh
# Start the application stack
docker compose upCurrent Version
v2.3.1 - Released February 2026
DISA process documentation, SRG ID display, export improvements, and DRY refactors. View Release Notes →
Vulcan bridges the gap between security requirements and practical implementation, enabling organizations to:
Vulcan is a core component of the MITRE Security Automation Framework (SAF), a comprehensive suite of tools designed to automate security validation and compliance checking.
Compliance automation framework
Security results visualization
Command-line security tools