Skip to main content
briiirussell
ملف منشئ GitHub

briiirussell

عرض على مستوى المستودعات لـ ٢٩ skills مجمعة عبر ١ مستودعات GitHub.

skills مجمعة
٢٩
مستودعات
١
محدث
٢٧ مايو ٢٠٢٦
خريطة المستودعات

أين توجد skills

أهم المستودعات حسب عدد skills المجمعة، مع حصتها من كتالوج هذا المنشئ وانتشارها المهني.

مستكشف المستودعات

المستودعات و skills الممثلة

breach-patterns
محللو أمن المعلومات

Learn from public breach disclosures — extract the audit question each one implies and check your own stack. Capital One IMDS abuse, LastPass vault exfiltration, Okta Lapsus$, Snowflake credential reuse, MOVEit, SolarWinds, Equifax, Target POS, Codecov, Uber,…

٢٧ مايو ٢٠٢٦
finding-triage
محللو أمن المعلومات

Triage a single security finding — from a scanner, audit, advisory, or report — to a defensible disposition with a mitigation plan, false-positive justification, or accepted-risk writeup. Use when the user mentions 'triage this finding,' 'is this a real…

٢٧ مايو ٢٠٢٦
incident-triage
محللو أمن المعلومات

Guide rapid triage and initial response to security incidents following NIST SP 800-61 methodology. Use when the user mentions 'incident response,' 'security incident,' 'triage,' 'we've been hacked,' 'breach,' 'compromised,' 'malware detected,' 'suspicious…

٢٧ مايو ٢٠٢٦
prompt-injection
محللو أمن المعلومات

Audit applications for AI prompt injection, agent security, and LLM permission boundary vulnerabilities. Use when the user mentions 'prompt injection,' 'LLM security,' 'AI security,' 'jailbreak,' 'indirect prompt injection,' 'prompt leaking,' 'AI red team,'…

٢٧ مايو ٢٠٢٦
hipaa-audit
محللو أمن المعلومات

Audit applications and infrastructure handling Protected Health Information against HIPAA — Security Rule (administrative, physical, technical safeguards), Privacy Rule, Breach Notification Rule, plus HITECH. Covers ePHI scoping, the 18 HIPAA identifiers,…

٢٧ مايو ٢٠٢٦
pci-audit
محللو أمن المعلومات

Audit applications and infrastructure handling payment card data against PCI DSS v4.0. Heavy emphasis on scope determination (the single most-leveraged variable) plus the engineering-relevant requirements — Req 3 (storage of CHD), Req 4 (transmission), Req 6…

٢٧ مايو ٢٠٢٦
red-team-engagement
محللو أمن المعلومات

Plan, scope, and execute an authorized red-team engagement — distinct from a penetration test. Covers engagement methodology, assumed-breach scenarios, ATT&CK emulation plans, rules of engagement, deconfliction with the blue team, post-engagement debriefs,…

٢٧ مايو ٢٠٢٦
ai-risk-management
محللو أمن المعلومات

Apply the NIST AI Risk Management Framework (AI RMF 1.0) and adjacent guidance to AI / ML systems — model lifecycle governance, fairness and bias evaluation, robustness, transparency, accountability, third-party model risk, monitoring for drift, and AI…

٢٧ مايو ٢٠٢٦
عرض 8 من أصل ٢٩ skills مجمعة.
عرض ١ من أصل ١ مستودعات
تم تحميل كل المستودعات