Skip to main content

このリポジトリの skills

autohandai/community-skills - 17ページ

SkillsMP は autohandai/community-skills から 1,040 件の skill を収集しています。skill を開くとソースと詳細を確認できます。

autohandai/community-skills

収集済み skill 1,040 件中 40 件を表示しています。

職業分類
情報セキュリティアナリスト
説明

Reverse engineer Rust-compiled malware using IDA Pro and Ghidra with techniques for handling non-null-terminated strings, crate dependency extraction, and Rust-specific control flow analysis.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Performs advanced network reconnaissance using Nmap's scripting engine, timing controls, evasion techniques, and output parsing to discover hosts, enumerate services, detect vulnerabilities, and fingerprint operating systems across authorized target networks.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Tests Android inter-process communication (IPC) through intents for vulnerabilities including intent injection, unauthorized component access, broadcast sniffing, pending intent hijacking, and content provider data leakage. Use when assessing Android app…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Tests authentication and authorization mechanisms in mobile application APIs to identify broken authentication, insecure token management, session fixation, privilege escalation, and IDOR vulnerabilities. Use when performing API security assessments against…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Detect dangerous ACL misconfigurations in Active Directory using ldap3 to identify GenericAll, WriteDACL, and WriteOwner abuse paths

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Analyzes network traffic captures and flow data to identify adversary activity during security incidents, including command-and-control communications, lateral movement, data exfiltration, and exploitation attempts. Uses Wireshark, Zeek, and NetFlow analysis…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Leverages Splunk Enterprise Security and SPL (Search Processing Language) to investigate security incidents through log correlation, timeline reconstruction, and anomaly detection. Covers Windows event logs, firewall logs, proxy logs, and authentication data…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Establish SAML 2.0 identity federation between on-premises Active Directory and Azure AD (Microsoft Entra ID) for seamless cross-domain authentication and SSO to cloud applications.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Builds comprehensive identity governance and lifecycle management processes including joiner-mover-leaver automation, role mining, access request workflows, periodic recertification, and orphaned account remediation using IGA platforms. Activates for requests…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Designs and documents structured incident response playbooks that define step-by-step procedures for specific incident types aligned with NIST SP 800-61r3 and SANS PICERL frameworks. Covers playbook structure, decision trees, escalation criteria, RACI…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Build collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source event data for attack chain reconstruction and investigation documentation.

原文の言語: 英語

更新
職業分類
警備員一線監督者
説明

Build structured communication templates for malware incidents including stakeholder notifications, executive briefings, technical advisories, and regulatory disclosures with severity-based escalation procedures.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Apply bottom-up and top-down role mining techniques to discover optimal RBAC roles from existing user-permission assignments, reducing role explosion and enforcing least privilege.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Systematically collects, categorizes, and distributes indicators of compromise (IOCs) during and after security incidents to enable detection, blocking, and threat intelligence sharing. Covers network, host, email, and behavioral indicators using STIX/TAXII…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Collect volatile forensic evidence from a compromised system following order of volatility, preserving memory, network connections, processes, and system state before they are lost.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Responds to security incidents in cloud environments (AWS, Azure, GCP) by performing identity-based containment, cloud-native log analysis, resource isolation, and forensic evidence acquisition adapted for ephemeral cloud infrastructure. Activates for…

原文の言語: 英語

更新
職業分類
その他の保護サービス従事者
説明

Responds to malware infections across enterprise endpoints by identifying the malware family, determining infection vectors, assessing spread, and executing eradication procedures. Covers the full lifecycle from detection through containment, analysis,…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Performs memory forensics analysis using Volatility 3 to extract evidence of malware execution, process injection, network connections, and credential theft from RAM dumps captured during incident response. Covers memory acquisition, process analysis, DLL…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Responds to phishing incidents by analyzing reported emails, extracting indicators, assessing credential compromise, quarantining malicious messages across the organization, and remediating affected accounts. Covers email header analysis, URL/attachment…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Facilitate structured post-incident reviews to identify root causes, document what worked and failed, and produce actionable recommendations to improve future incident response.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Implement Microsoft's Enhanced Security Admin Environment (ESAE) tiered administration model for Active Directory. Covers Tier 0/1/2 separation, privileged access workstations (PAWs), administrative f

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Harden LDAP directory services against common attacks including credential harvesting, LDAP injection, anonymous binding, and channel binding bypass. Covers LDAPS enforcement, channel binding, LDAP si

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Deploy Cisco Duo multi-factor authentication across enterprise applications, VPN, RDP, and SSH access points. This skill covers Duo integration methods, adaptive authentication policies, device trust

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Configure secure OAuth 2.0 authorization flows including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant. This skill covers flow selection, PKCE implementation, token

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Executes containment strategies to stop active adversary operations and prevent lateral movement during a confirmed security breach. Implements short-term and long-term containment using network segmentation, endpoint isolation, credential revocation, and…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Rapidly contain an active security breach by isolating compromised systems, blocking attacker communications, and preserving evidence while minimizing business disruption.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Detects anomalous authentication patterns using UEBA analytics, statistical baselines, and machine learning models to identify impossible travel, credential stuffing, brute force, password spraying, and compromised account behaviors across authentication…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Detect compromised O365 and Google Workspace email accounts by analyzing inbox rule creation, suspicious sign-in locations, mail forwarding rules, and unusual API access patterns via Microsoft Graph and audit logs.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Detect OAuth access token theft and misuse by analyzing sign-in logs for impossible travel, new device patterns, token replay from unusual IPs, and anomalous scope requests via Microsoft Graph and Okta APIs.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Systematically remove malware, backdoors, and attacker persistence mechanisms from infected systems while ensuring complete eradication and preventing re-infection.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Configure IAM permission boundaries in AWS to delegate role creation to developers while enforcing maximum privilege limits set by the security team.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Configure Microsoft Entra Privileged Identity Management to enforce just-in-time role activation, approval workflows, and access reviews for Azure AD privileged roles.

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Configure Microsoft Entra ID (Azure AD) Conditional Access policies for zero trust access control. Covers signal-based policy design, device compliance requirements, risk-based authentication, named l

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Implements Delinea Secret Server for privileged access management (PAM) including secret vault configuration, role-based access policies, automated password rotation, session recording, and integration with Active Directory and cloud platforms. Activates for…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Implements comprehensive Google Workspace security hardening including admin console configuration, phishing-resistant MFA enforcement, DLP policies, email authentication (SPF/DKIM/DMARC), OAuth app control, and external sharing restrictions. Activates for…

原文の言語: 英語

更新
職業分類
ネットワーク・コンピュータシステム管理者
説明

Configure SAML 2.0 single sign-on for Google Workspace with a third-party identity provider, enabling centralized authentication and enforcing organization-wide access policies.

原文の言語: 英語

更新
職業分類
ネットワーク・コンピュータシステム管理者
説明

Implements HashiCorp Vault dynamic secrets engines for database credentials, AWS IAM keys, and PKI certificates with automatic generation, lease management, and credential rotation to eliminate static secrets in application configurations. Activates for…

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Deploy SailPoint IdentityNow or IdentityIQ for identity governance and administration. Covers identity lifecycle management, access request workflows, certification campaigns, role mining, SOD policy

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Implement Just-In-Time (JIT) access provisioning to eliminate standing privileges by granting temporary, time-bound access only when needed. This skill covers JIT architecture design, approval workflo

原文の言語: 英語

更新
職業分類
情報セキュリティアナリスト
説明

Deploy privileged access management for database systems including Oracle, SQL Server, PostgreSQL, and MySQL. Covers session proxy configuration, credential vaulting, query auditing, dynamic credentia

原文の言語: 英語

更新
収集済み skill 1,040 件中 40 件を表示しています。