| name | u0471-education-security-threat-modeler |
| description | Build and operate the "Education Security Threat Modeler" capability for Education and Upskilling. Trigger when this exact capability is needed in mission execution. |
Education Security Threat Modeler
Why This Skill Exists
We need this skill because human capability growth requires targeted planning under constraints. This specific skill anticipates attack paths before adversaries exploit them.
When To Use
Use this skill when the request explicitly needs "Education Security Threat Modeler" outcomes in the Education and Upskilling domain.
Step-by-Step Implementation Guide
- Define the scope and success metrics for
Education Security Threat Modeler, including at least three measurable KPIs tied to persistent skill gaps and poor learning outcomes.
- Design and version the input/output contract for skill profiles, learning paths, and support resources, then add schema validation and failure-mode handling.
- Implement the core capability using attack-surface modeling, and produce threat models with deterministic scoring.
- Integrate the skill into swarm orchestration: task routing, approval gates, retry strategy, and rollback controls.
- Add unit, integration, and simulation tests that explicitly cover persistent skill gaps and poor learning outcomes, then run regression baselines.
- Deploy behind a feature flag, monitor telemetry/alerts for two release cycles, and iterate thresholds based on observed outcomes.
Required Deliverables
- Capability contract: input schema, deterministic scoring, output schema, and failure modes.
- Runtime profile: detection-guard using attack-surface modeling to produce threat models.
- Orchestration integration: education-and-upskilling:detection-guard routing, approval gates, retries, and rollback controls.
- Validation evidence: unit, integration, simulation, regression-baseline suites and rollout telemetry.
Operational Runbook
Preflight
- Confirm the Education Security Threat Modeler request scope, source evidence, and measurable success criteria before execution.
- Verify feature flag skill_0471_education-security-threat-modele, approval gates, and rollback owner before autonomous use.
Execution
- Execute attack-surface modeling with deterministic scoring and reproducible trace capture.
- Produce threat models plus scorecard, assumptions, and unresolved-risk notes.
Recovery
- Fail closed when required signals, evidence, or approval gates are missing.
- Rollback to the last stable baseline when posture is critical or validation fails.
Handoff
- Publish threat models, validation evidence, and telemetry links to downstream owners.
- Queue follow-up tasks for unresolved risks, threshold tuning, or approval review.
Guardrails
- [quality] Require deterministic scoring and validation evidence before promotion.
- [reliability] Preserve retries, rollback controls, and failure-mode evidence for every run.
- [safety] Route critical posture or missing approval gates to human review before autonomous action.