Skip to main content

이 저장소의 skills

GRCEngClub/claude-grc-engineering - 3페이지

SkillsMP는 GRCEngClub/claude-grc-engineering에서 99개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.

GRCEngClub/claude-grc-engineering

수집된 skill 99개 중 19개를 표시합니다.

직업 분류
정보 보안 분석가
설명

Japanese ISMAP (Information System Security Management and Assessment Program) expert. Provides guidance on ISO 27001/27017/27018 compliance, Japanese government cloud requirements, and data residency in Tokyo/Osaka regions.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

ISO 27001 ISMS expert. Provides guidance on management system requirements, Annex A controls, certification process, and continuous improvement for information security.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

NIST 800-53 control framework expert. Provides guidance on control families, baseline selection, tailoring, and federal compliance requirements including FedRAMP alignment.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

NYDFS 23 NYCRR 500 expert for financial services. Deep knowledge of New York Department of Financial Services cybersecurity requirements including all 23 sections, annual certification, CISO requirements, penetration testing, incident notification, and…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Canadian PBMM (Protected B, Medium Integrity, Medium Availability) expert. Provides comprehensive guidance on ITSG-33 controls, CCCS assessment, Canadian data residency, and Government of Canada cloud security requirements.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

PCI DSS v4.0.1 compliance expert. Provides guidance on payment card industry security, ROC completion, SAQ selection, requirement interpretation, and the new March 2025 mandatory requirements.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

SOC 2 Trust Service Criteria expert. Provides guidance on Type I/II audits, control mapping, evidence requirements, and audit preparation for all Trust Service Categories.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

StateRAMP expert for state and local government cloud services. Deep knowledge of State Risk and Authorization Management Program including Low/Moderate impact levels, NIST 800-53 controls, state-specific requirements, FedRAMP alignment, and multi-state…

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

US Export Controls expert covering ITAR and EAR. Provides comprehensive guidance on defense articles (USML), dual-use commercial items (CCL), jurisdiction determination, FIPS encryption, denied party screening, and cloud compliance strategies.

원문 언어: 영어

업데이트
직업 분류
회계사 및 감사원
설명

Designs and documents control testing procedures. Creates test plans, executes walkthroughs, and documents results for audit workpapers.

원문 언어: 영어

업데이트
직업 분류
회계사 및 감사원
설명

Validates audit evidence artifacts for completeness, timeliness, relevance, and authenticity. Reviews screenshots, logs, configurations, and policies against control requirements.

원문 언어: 영어

업데이트
직업 분류
회계사 및 감사원
설명

Generates professional audit findings using the Condition-Criteria-Cause-Effect format. Creates management letter comments and remediation recommendations.

원문 언어: 영어

업데이트
직업 분류
회계사 및 감사원
설명

Analyzes vendor security questionnaire responses. Identifies red flags, gaps, and areas requiring follow-up. Supports SIG, CAIQ, and custom questionnaires.

원문 언어: 영어

업데이트
직업 분류
회계사 및 감사원
설명

Calculates vendor risk scores using inherent and residual risk factors. Generates risk ratings, comparisons, and treatment recommendations.

원문 언어: 영어

업데이트
직업 분류
회계사 및 감사원
설명

Conducts comprehensive vendor security assessments. Evaluates vendor security posture, identifies risks, and generates assessment reports with recommendations.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Expertise on FedRAMP SSP authoring — what the DOCX templates contain, what OSCAL 1.2.0 SSP looks like for FedRAMP, how this plugin fits alongside Compliance Trestle and oscal-cli.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Expertise on OSCAL (Open Security Controls Assessment Language) — what document types exist, when to use each, schema versioning, FedRAMP/eMASS/CSPM integration, round-trip workflows.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Expertise in evaluating GitHub repositories for compliance — what checks are meaningful, which SCF controls they map to, and how to interpret gh CLI output.

원문 언어: 영어

업데이트
직업 분류
컴플라이언스 담당자
설명

Manages policy documents through their full lifecycle. Reviews policies for gaps, suggests updates based on framework changes, and tracks approval workflows.

원문 언어: 영어

업데이트
수집된 skill 99개 중 19개를 표시합니다.