Type of request
What content are you suggesting for?
TL;DR
Create shareable visual security assets (posters, infographics, cards) that distill key security frameworks into fast, memorable references. These would supplement docs, not replace them.
Why do you think this update or modification is needed
Why
Most security failures aren’t due to missing docs — they’re due to human factors:
- Cognitive overload
- Stress during incidents
- Poor pattern recognition
- Knowledge buried in wikis
Visuals help by reinforcing shared mental models, not just checklists.
Why posters work:
- Pattern recognition > memorization
- More likely to be saved, shared, printed
- Visible during incidents, not buried in docs
- Lower barrier for non-security roles
Can you justify your argument or provide additional resources?
Proven Precedent
This already works elsewhere:
I shared some examples in framework-reviewers channel: https://discord.com/channels/1207448979059638302/1397286889265823995/1450333185383862283
Here's examples from CISA and NIST
Contribution intent
Type of request
What content are you suggesting for?
TL;DR
Create shareable visual security assets (posters, infographics, cards) that distill key security frameworks into fast, memorable references. These would supplement docs, not replace them.
Why do you think this update or modification is needed
Why
Most security failures aren’t due to missing docs — they’re due to human factors:
Visuals help by reinforcing shared mental models, not just checklists.
Why posters work:
Can you justify your argument or provide additional resources?
Proven Precedent
This already works elsewhere:
SANS Institute — cybersecurity posters & cheat sheets
https://www.sans.org/posters (or https://github.com/deepanshusood/SANS-Posters)
MITRE — printable ATT&CK Matrix poster (widely hung in SOCs)
https://attack.mitre.org/docs/attack_matrix_poster_2024_april.pdf
CISA — printable cybersecurity awareness posters & infographics
https://www.cisa.gov/resources-tools/resources/cybersecurity-awareness-month-toolkit
OWASP — security awareness campaigns & Top 10 visuals
https://owasp.org/www-project-application-security-awareness-campaigns/
I shared some examples in framework-reviewers channel: https://discord.com/channels/1207448979059638302/1397286889265823995/1450333185383862283
Here's examples from CISA and NIST
Contribution intent