Skip to main content

이 저장소의 skills

nexuslinkproductions/yuri-os - 11페이지

SkillsMP는 nexuslinkproductions/yuri-os에서 1,033개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.

nexuslinkproductions/yuri-os

수집된 skill 1,033개 중 40개를 표시합니다.

직업 분류
정보 보안 분석가
설명

Responds to security incidents in cloud environments (AWS, Azure, GCP) by performing identity-based containment, cloud-native log analysis, resource isolation, and forensic evidence acquisition adapted for ephemeral cloud infrastructure. Activates for…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

This skill outlines methodologies for performing authorized penetration testing against AWS, Azure, and GCP cloud environments. It covers understanding the shared responsibility model for testing scope, leveraging cloud-specific attack tools like Pacu and…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

>- Conduct a defensible cybersecurity risk assessment using the NIST SP 800-30 Rev 1 methodology: prepare scope and a risk model, identify threat sources and threat events, identify vulnerabilities and predisposing conditions, determine likelihood and impact,…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Perform DCSync attacks to replicate Active Directory credentials and establish domain persistence by extracting KRBTGT, Domain Admin, and service account hashes for Golden Ticket creation.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conducts external reconnaissance using Open Source Intelligence (OSINT) techniques to map an organization''s external attack surface without directly interacting with target systems. The tester gathers information from public sources including DNS records,…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Plan and execute a comprehensive red team engagement covering reconnaissance through post-exploitation using MITRE ATT&CK-aligned TTPs to evaluate an organization's detection and response capabilities.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Execute an internal network penetration test simulating an insider threat or post-breach attacker to identify lateral movement paths, privilege escalation vectors, and sensitive data exposure within the corporate network.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conduct internal Active Directory reconnaissance using BloodHound Community Edition to map attack paths, identify privilege escalation chains, and discover misconfigurations in domain environments.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Responds to malware infections across enterprise endpoints by identifying the malware family, determining infection vectors, assessing spread, and executing eradication procedures. Covers the full lifecycle from detection through containment, analysis,…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Simulates man-in-the-middle attacks using Ettercap, mitmproxy, and Bettercap in authorized environments to intercept, analyze, and modify network traffic for testing encryption enforcement, certificate validation, and detection capabilities.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Performs memory forensics analysis using Volatility 3 to extract evidence of malware execution, process injection, network connections, and credential theft from RAM dumps captured during incident response. Covers memory acquisition, process analysis, DLL…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conducts penetration testing of iOS and Android mobile applications following the OWASP Mobile Application Security Testing Guide (MASTG) to identify vulnerabilities in data storage, network communication, authentication, cryptography, and platform-specific…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conducts comprehensive network penetration tests against authorized target environments by performing host discovery, port scanning, service enumeration, vulnerability identification, and controlled exploitation to assess the security posture of network…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Pass-the-Ticket (PtT) is a lateral movement technique that uses stolen Kerberos tickets (TGT or TGS) to authenticate to services without knowing the user's password. By extracting Kerberos tickets fro

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Responds to phishing incidents by analyzing reported emails, extracting indicators, assessing credential compromise, quarantining malicious messages across the organization, and remediating affected accounts. Covers email header analysis, URL/attachment…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Facilitate structured post-incident reviews to identify root causes, document what worked and failed, and produce actionable recommendations to improve future incident response.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Design and execute a social engineering penetration test including phishing, vishing, smishing, and physical pretexting campaigns to measure human security resilience and identify training gaps.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Plan and execute authorized vishing (voice phishing) pretext calls to assess employee susceptibility to social engineering and evaluate security awareness controls.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implement Microsoft's Enhanced Security Admin Environment (ESAE) tiered administration model for Active Directory. Covers Tier 0/1/2 separation, privileged access workstations (PAWs), administrative f

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure AWS Verified Access to provide VPN-less zero trust network access to internal applications using identity and device posture verification with Cedar policy language.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

A Certificate Authority (CA) is the trust anchor in a PKI hierarchy, responsible for issuing, signing, and revoking digital certificates. This skill covers building a two-tier CA hierarchy (Root CA +

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configures host-based intrusion detection systems (HIDS) to monitor endpoint file integrity, system calls, and configuration changes for security violations. Use when deploying OSSEC, Wazuh, or AIDE for endpoint monitoring, building file integrity monitoring…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Hardware Security Modules (HSMs) are tamper-resistant physical devices that safeguard cryptographic keys and perform cryptographic operations in a hardened environment. Keys stored in an HSM never lea

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configuring Google Cloud Identity-Aware Proxy (IAP) to enforce per-request identity verification for Compute Engine, App Engine, Cloud Run, and GKE services using access levels, context-aware policies, and programmatic access with service accounts.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Harden LDAP directory services against common attacks including credential harvesting, LDAP injection, anonymous binding, and channel binding bypass. Covers LDAPS enforcement, channel binding, LDAP si

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure microsegmentation policies to enforce least-privilege workload-to-workload access using tools like VMware NSX, Illumio, and Calico, preventing lateral movement in zero trust architectures.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy Cisco Duo multi-factor authentication across enterprise applications, VPN, RDP, and SSH access points. This skill covers Duo integration methods, adaptive authentication policies, device trust

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Designs and implements VLAN-based network segmentation on managed switches to isolate network zones, enforce access control between segments, and reduce the attack surface by limiting lateral movement paths in enterprise network environments.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure secure OAuth 2.0 authorization flows including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant. This skill covers flow selection, PKCE implementation, token

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configures pfSense firewall rules, NAT policies, VPN tunnels, and traffic shaping to enforce network segmentation, control traffic flow, and protect internal network zones in enterprise and small-to-medium business environments.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Installs, configures, and tunes Snort 3 intrusion detection system to monitor network traffic for malicious activity using custom and community rulesets, preprocessors, and alert output plugins on authorized network segments.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploys and configures Suricata IDS/IPS with Emerging Threats rulesets, EVE JSON logging, and custom rules for real-time network traffic inspection, threat detection, and integration with SIEM platforms for centralized security monitoring.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

TLS 1.3 (RFC 8446) is the latest version of the Transport Layer Security protocol, providing significant improvements over TLS 1.2 in both security and performance. It reduces handshake latency to 1-R

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configures Microsoft Defender for Endpoint (MDE) advanced protection settings including attack surface reduction rules, controlled folder access, network protection, and exploit protection. Use when hardening Windows endpoints beyond default Defender…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configures Windows Event Logging with advanced audit policies to generate high-fidelity security events for threat detection and forensic investigation. Use when enabling audit policies for logon events, process creation, privilege use, and object access to…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configuring Zscaler Private Access (ZPA) to replace traditional VPN with zero trust network access by deploying App Connectors, defining application segments, configuring access policies based on user identity and device posture, and integrating with IdPs.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Executes containment strategies to stop active adversary operations and prevent lateral movement during a confirmed security breach. Implements short-term and long-term containment using network segmentation, endpoint isolation, credential revocation, and…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Wire Promptfoo and DeepTeam into CI/CD for automated regression red-teaming of LLM apps against OWASP LLM Top 10 and OWASP Agentic presets, failing the build when jailbreak or injection vulnerabilities regress.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Correlates security events in IBM QRadar SIEM using AQL (Ariel Query Language), custom rules, building blocks, and offense management to detect multi-stage attacks across network, endpoint, and application log sources. Use when SOC analysts need to…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Correlates disparate security incidents, IOCs, and adversary behaviors across time and organizations to identify unified threat campaigns, attribute them to common threat actors, and extract shared indicators for improved detection. Use when multiple…

원문 언어: 영어

업데이트
수집된 skill 1,033개 중 40개를 표시합니다.