Skip to main content

cve-triage-rubric

Standard operating procedure for triaging the impact of a CVE for a security operations team. Use when assessing a CVE's severity, exploitability, and asset impact, and deciding whether to patch, mitigate, monitor, or take no action. Combines CVSS, EPSS, and CISA KEV signals with asset-impact analysis, keeps all math deterministic, requires human review before any action, and pulls external context via a web_search tool rather than raw downloads.

Jump to install

Source facts

Repository
aws-samples/sample-sentinel-harness
Last source activity
July 2, 2026 at 13:07
Detected SKILL.md language
English
Stars
3
Forks
1

Install options

The review-first prompt is selected by default. You can switch to a direct command or download a local copy.

Review the source files

Read SKILL.md and any companion files shown by SkillsMP before deciding whether to install.