Skip to main content

GRCEngClub/claude-grc-engineering

SkillsMP는 GRCEngClub/claude-grc-engineering에서 99개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.

최근 기록된 소스 활동
SkillsMP 카탈로그 업데이트
수집된 skills
99
GitHub 스타
376
GitHub 포크
86

수집된 skill 99개 중 40개를 표시합니다.

직업 분류
컴플라이언스 담당자
설명

Verbatim reference for all 320 NIST 800-171A Rev 2 assessment objectives, plus the Rev 2 → Rev 3 control crosswalk. Use for AO-level lookups (e.g., 3.1.1[c]), evidence planning, and forward-mapping to Rev 3. Pairs with cmmc-expert.

원문 언어: 영어

업데이트
직업 분류
웹 개발자
설명

Scaffolds a complete React/Vite website project from site-config.json. Generates components, styles, and configuration based on the site type and plan data.

원문 언어: 영어

업데이트
직업 분류
네트워크·컴퓨터 시스템 관리자
설명

Validates AWS readiness for website deployment. Checks CLI tools, credentials, SES, Route 53, and ACM. Produces a report with pass/fail and action items.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Build and deploy a production-ready Trust Center for any company. Use this skill whenever someone asks to create a trust center, compliance portal, security page, or wants to publish their SOC 2/SOC 3/ISO 27001/HIPAA/compliance posture publicly. Also triggers…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

NIST AI 100-1 (AI RMF 1.0) expert. Stub-depth framework plugin that routes to the SCF crosswalk. Level up by adding framework-specific context, assessment workflow, and evidence patterns.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Use when interpreting AWS Secrets Manager connector output, deciding between inspector and retrieve modes, drafting SCF-mapped controls for rotation / KMS / public-access / inactive-access findings, or troubleshooting an aws-secrets-inspector run.

원문 언어: 영어

업데이트
직업 분류
기타 중등 후 교사
설명

Guide a research project through the full academic lifecycle — from raw idea to concrete research question, literature grounding, methodology, writing, feedback, and publication. Use this skill whenever the user shares a research idea, asks to "flesh out" a…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

UK NCSC Cyber Essentials Plus (CE+) v3.3 Danzell expert. Reference-depth framework plugin with assessment, scope determination, and evidence checklist — backed by the SCF crosswalk. Five core controls: Firewalls, Secure Configuration, User Access Control (MFA…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

HIPAA Security Rule expert for US healthcare compliance. Deep knowledge of 45 CFR Part 164 Subpart C, Administrative/Physical/Technical Safeguards, Required vs Addressable specifications, Risk Analysis, Business Associate Agreements, and HHS OCR enforcement.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Interpret testssl-inspector normalized findings, recommend remediations, and tie evidence back to SCF anchor controls plus SOC 2 / NIST 800-53 r5 / PCI DSS 4.0.1 / ISO 27002:2022 equivalents derived from SCF crosswalks.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

NIST Cybersecurity Framework v2.0 expert. Reference-depth knowledge of the six Functions (Govern, Identify, Protect, Detect, Respond, Recover), Categories and Subcategories, Profiles (Current vs Target), Tiers, Implementation Examples, and the practitioner…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

CMMC v2.0 expert for DoD contractors. Covers NIST 800-171 Rev 2 (14 families, 110 controls), SPRS scoring, POA&M rules, 32 CFR Part 170, DFARS clauses, scoping, ESP/CSP, C3PAO assessment lifecycle, and Rev 2 → Rev 3 transition.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Sets up GitHub Actions CI/CD workflow for automatic deployment to AWS on push to main. Uses GitHub OIDC for keyless AWS authentication.

원문 언어: 영어

업데이트
직업 분류
네트워크·컴퓨터 시스템 관리자
설명

Builds the React/Vite site, syncs to S3, and invalidates CloudFront cache. Uses the plugin's bundled deploy.sh script.

원문 언어: 영어

업데이트
직업 분류
네트워크·컴퓨터 시스템 관리자
설명

Deploys AWS CloudFormation infrastructure stacks for the website (S3, CloudFront, Route 53, ACM, and optionally contact form API).

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Creates a GitHub repository for the website project, initializes git, and pushes the code.

원문 언어: 영어

업데이트
직업 분류
프로젝트 관리 전문가
설명

GRC-specific portfolio questionnaire that creates a site-config.json and SITE-PLAN.md tailored to GRC engineers — certifications, frameworks, audit experience, tools, and projects.

원문 언어: 영어

업데이트
직업 분류
재무 및 투자 분석가
설명

Helps you triage a quarterly user access review from an Okta, Azure AD, AWS IAM, GitHub, or generic CSV/JSON export. For each row, recommends certify, revoke, manager confirm, or investigate using rules that catch the usual audit-fail patterns: terminated…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Expertise in evaluating Azure subscription findings from azure-inspector and mapping them to SCF controls.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Interpret CrowdStrike Falcon findings for sensor coverage, policy visibility, and host group scoping.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Interpret datadog-inspector findings and translate Datadog monitoring, audit, log-retention, SSO, and RBAC results into GRC evidence and remediation.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Interpret drata-inspector findings generated from drata-cli workflows and turn Drata control, monitor, evidence, personnel, and integration posture into GRC action.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Interpret slack-inspector findings, explain Slack API coverage limits, and turn Slack workspace posture results into control evidence or remediation.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Interpret Snowflake account usage findings for MFA, network policies, masking/row access policies, session timeout, and retention.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Interpret splunk-inspector findings and translate Splunk retention, RBAC, audit, search ACL, and auth posture into compliance evidence and remediation.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Interpret Tenable vulnerability-management findings for scan coverage, credentialed scans, vulnerability age, and scan access visibility.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

APRA CPS 234 expert for Australian prudential information security. Reference-depth framework plugin with scope determination, evidence checklist, and SCF-backed assessment guidance.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Singapore MAS Technology Risk Management Guidelines expert. Reference-depth framework plugin with scope determination, evidence checklist, and SCF-backed assessment guidance for Singapore-regulated financial institutions.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

NERC Critical Infrastructure Protection expert. Reference-depth framework plugin with scope determination, evidence checklist, and SCF-backed assessment guidance for BES Cyber Systems.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Always use when the user asks to create, generate, draw, or design a diagram, flowchart, architecture diagram, ER diagram, sequence diagram, class diagram, network diagram, mockup, wireframe, UI sketch, GRC workflow, control map, audit process, risk register…

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

Use when creating a draw.io diagram for audit planning, request lists, evidence, testing, exceptions, remediation, and reporting in a GRC, security, audit, compliance, privacy, cloud, or risk context.

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

Use when creating a draw.io diagram for high-level GRC program architecture, continuous compliance operating models, three lines of defense, and executive program maps in a GRC, security, audit, compliance, privacy, cloud, or risk context.

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

Use when creating a draw.io diagram for controls mapped across frameworks, systems, owners, risks, and evidence sources in a GRC, security, audit, compliance, privacy, cloud, or risk context.

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

Use when creating a draw.io diagram for regulated data flows, data classifications, storage, processing, transfer, access, retention, and logging in a GRC, security, audit, compliance, privacy, cloud, or risk context.

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

Use when creating a draw.io diagram for evidence collection, evidence lifecycle, audit evidence pipelines, and systems of record in a GRC, security, audit, compliance, privacy, cloud, or risk context.

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

Use when creating a draw.io diagram for mapping controls and obligations across frameworks to show overlap, gaps, and conflicts in a GRC, security, audit, compliance, privacy, cloud, or risk context.

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

Use when creating a draw.io diagram for POA&M items, audit findings, remediation milestones, validation, closure, and escalation paths in a GRC, security, audit, compliance, privacy, cloud, or risk context.

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

Use when creating a draw.io diagram for responsibility assignments across GRC, security, engineering, legal, HR, procurement, vendors, and auditors in a GRC, security, audit, compliance, privacy, cloud, or risk context.

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

Use when creating a draw.io diagram for risk intake, scoring, treatment, exception approval, residual risk, and monitoring workflows in a GRC, security, audit, compliance, privacy, cloud, or risk context.

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

Use when creating a draw.io diagram for cloud/SaaS shared responsibility, inherited controls, provider controls, customer controls, and evidence ownership in a GRC, security, audit, compliance, privacy, cloud, or risk context.

원문 언어: 영어

업데이트
수집된 skill 99개 중 40개를 표시합니다.