Skip to main content

Skills in this repository

CyberStrikeus/CyberStrike - Page 52

SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.

CyberStrikeus/CyberStrike

Showing 40 of 7,442 collected skills.

occupation
Information Security Analysts
description

Prefer using secrets as files over secrets as environment variables (Automated)

updated
occupation
Information Security Analysts
description

Consider external secret storage (Manual)

updated
occupation
Information Security Analysts
description

Configure Image Provenance using ImagePolicyWebhook admission controller (Manual)

updated
occupation
Information Security Analysts
description

Create administrative boundaries between resources using namespaces (Manual)

updated
occupation
Information Security Analysts
description

Ensure that the seccomp profile is set to RuntimeDefault in the pod definitions (Automated)

updated
occupation
Information Security Analysts
description

Apply Security Context to Pods and Containers (Manual)

updated
occupation
Information Security Analysts
description

The default namespace should not be used (Automated)

updated
occupation
Information Security Analysts
description

Ensure Image Vulnerability Scanning is enabled (Automated)

updated
occupation
Information Security Analysts
description

Minimize user access to Container Image repositories (Manual)

updated
occupation
Information Security Analysts
description

Minimize cluster access to read-only for Container Image repositories (Manual)

updated
occupation
Information Security Analysts
description

Ensure only trusted container images are used (Manual)

updated
occupation
Information Security Analysts
description

Ensure Kubernetes Web UI is Disabled (Automated)

updated
occupation
Information Security Analysts
description

Ensure that Alpha clusters are not used for production workloads (Automated)

updated
occupation
Information Security Analysts
description

Consider GKE Sandbox for running untrusted workloads (Automated)

updated
occupation
Information Security Analysts
description

Ensure use of Binary Authorization (Automated)

updated
occupation
Information Security Analysts
description

Ensure GKE clusters are not running using the Compute Engine default service account (Automated)

updated
occupation
Information Security Analysts
description

Prefer using dedicated GCP Service Accounts and Workload Identity (Manual)

updated
occupation
Information Security Analysts
description

Ensure Kubernetes Secrets are encrypted using keys managed in Cloud KMS (Automated)

updated
occupation
Information Security Analysts
description

Ensure the GKE Metadata Server is Enabled (Automated)

updated
occupation
Information Security Analysts
description

Ensure Container-Optimized OS (cos_containerd) is used for GKE node images (Automated)

updated
occupation
Information Security Analysts
description

Ensure Node Auto-Repair is enabled for GKE nodes (Automated)

updated
occupation
Information Security Analysts
description

Ensure Node Auto-Upgrade is enabled for GKE nodes (Automated)

updated
occupation
Information Security Analysts
description

When creating New Clusters - Automate GKE version management using Release Channels (Automated)

updated
occupation
Information Security Analysts
description

Ensure Shielded GKE Nodes are Enabled (Automated)

updated
occupation
Information Security Analysts
description

Ensure Integrity Monitoring for Shielded GKE Nodes is Enabled (Automated)

updated
occupation
Information Security Analysts
description

Ensure Secure Boot for Shielded GKE Nodes is Enabled (Automated)

updated
occupation
Information Security Analysts
description

Enable VPC Flow Logs and Intranode Visibility (Automated)

updated
occupation
Information Security Analysts
description

Ensure use of VPC-native clusters (Automated)

updated
occupation
Information Security Analysts
description

Ensure Control Plane Authorized Networks is Enabled (Automated)

updated
occupation
Information Security Analysts
description

Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)

updated
occupation
Information Security Analysts
description

Ensure clusters are created with Private Nodes (Automated)

updated
occupation
Information Security Analysts
description

Consider firewalling GKE worker nodes (Manual)

updated
occupation
Information Security Analysts
description

Ensure use of Google-managed SSL Certificates (Automated)

updated
occupation
Information Security Analysts
description

Ensure Logging and Cloud Monitoring is Enabled (Automated)

updated
occupation
Information Security Analysts
description

Enable Linux auditd logging (Manual)

updated
occupation
Information Security Analysts
description

Ensure authentication using Client Certificates is Disabled (Automated)

updated
occupation
Information Security Analysts
description

Manage Kubernetes RBAC users with Google Groups for GKE (Manual)

updated
occupation
Information Security Analysts
description

Ensure Legacy Authorization (ABAC) is Disabled (Automated)

updated
occupation
Information Security Analysts
description

Enable Customer-Managed Encryption Keys (CMEK) for GKE Persistent Disks (PD) (Manual)

updated
occupation
Information Security Analysts
description

Enable Customer-Managed Encryption Keys (CMEK) for Boot Disks (Automated)

updated
Showing 40 of 7,442 collected skills.