Skip to main content
Manusで任意のスキルを実行
ワンクリックで
GitHub リポジトリ

openshield

openshield には openshield-org から収集した 14 個の skills があり、リポジトリ単位の職業カバレッジとサイト内 skill 詳細ページを表示します。

収集済み skills
14
Stars
54
更新
2026-07-14
Forks
65
職業カバレッジ
1 件の職業カテゴリ · 100% 分類済み
リポジトリエクスプローラー

このリポジトリの skills

post-quantum-cryptography-azure
情報セキュリティアナリスト

Identifies and remediates non-quantum-safe cryptographic configurations in Azure including classical TLS key exchange, RSA and ECC keys in Key Vault, and classical certificate algorithms. Maps findings to NIST PQC standards FIPS 203, FIPS 204, and FIPS 205. Use when assessing quantum readiness of Azure infrastructure or building a Cryptographic Bill of Materials.

2026-07-14
analyzing-azure-activity-logs-for-threats
情報セキュリティアナリスト

Queries Azure Monitor activity logs and sign-in logs to detect suspicious administrative operations, impossible travel, and privilege escalation.

2026-06-21
analyzing-cloud-storage-access-patterns
情報セキュリティアナリスト

Detect abnormal access patterns in Azure Blob Storage by analyzing Storage Analytics and diagnostic logs. Identifies after-hours bulk downloads, access from new IP addresses, unusual API calls (GetBlob spikes), and potential data exfiltration.

2026-06-21
auditing-azure-active-directory-configuration
情報セキュリティアナリスト

Auditing Microsoft Entra ID (Azure Active Directory) configuration to identify risky authentication policies, overly permissive role assignments, and guest user risks.

2026-06-21
auditing-cloud-with-cis-benchmarks
情報セキュリティアナリスト

Conduct cloud security audits using Center for Internet Security (CIS) benchmarks for Azure. Covers interpreting CIS Foundations Benchmark controls, running automated assessments, and maintaining continuous compliance monitoring.

2026-06-21
building-cloud-siem-with-sentinel
情報セキュリティアナリスト

Deploy Microsoft Sentinel as a cloud-native SIEM and SOAR platform for Azure. Covers configuring data connectors (Entra ID, Azure Activity), writing KQL detection queries, and building automated response playbooks.

2026-06-21
building-identity-federation-with-saml-azure-ad
情報セキュリティアナリスト

Establish SAML 2.0 identity federation between on-premises Active Directory and Microsoft Entra ID (Azure AD) for seamless cross-domain authentication and SSO.

2026-06-21
building-identity-governance-lifecycle-process
情報セキュリティアナリスト

Builds comprehensive identity governance and lifecycle management processes in Azure Entra ID, including JML (Joiner-Mover-Leaver) automation and periodic access reviews.

2026-06-21
offensive-active-directory
情報セキュリティアナリスト

Offensive methodology for Hybrid Active Directory and Entra ID (Azure AD). Covers pivots from on-premises to cloud (AAD Connect, Golden SAML) and cloud-to-on-prem (DCSync).

2026-06-21
offensive-cloud
情報セキュリティアナリスト

Azure-specific offensive security testing methodology. Covers credential harvesting (IMDS, managed identities), enumeration, privilege escalation, and data exfiltration within Azure subscriptions and Entra ID tenants.

2026-06-21
offensive-idor
情報セキュリティアナリスト

Insecure Direct Object Reference (IDOR) testing skill focused on Azure resource identifiers and API endpoints. Covers GUID enumeration, horizontal/vertical privilege escalation, and Azure-specific object reference vulnerabilities.

2026-06-21
offensive-sqli
情報セキュリティアナリスト

SQL injection testing skill for offensive security assessments and bug bounty hunting. Covers error-based, UNION-based, and blind SQLi with Azure SQL specific attack paths. Use when performing web application SQL injection testing, database enumeration, or assessing injection vectors in APIs.

2026-06-21
offensive-ssrf
情報セキュリティアナリスト

Server-Side Request Forgery (SSRF) testing skill with focus on Azure metadata services and internal network pivots. Covers discovery, bypass techniques, and Azure-specific exploitation (IMDS, Managed Identities).

2026-06-21
offensive-waf-bypass
情報セキュリティアナリスト

WAF bypass techniques checklist for Azure Front Door and Application Gateway. Covers encoding bypass, header manipulation, and Azure-specific evasion strategies.

2026-06-21