Skip to main content

이 저장소의 skills

xalgord/xalgorix - 7페이지

SkillsMP는 xalgord/xalgorix에서 855개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.

xalgord/xalgorix

수집된 skill 855개 중 40개를 표시합니다.

직업 분류
정보 보안 분석가
설명

Apply bottom-up and top-down role mining techniques to discover optimal RBAC roles from existing user-permission assignments, reducing role explosion and enforcing least privilege.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implement Microsoft's Enhanced Security Admin Environment (ESAE) tiered administration model for Active Directory. Covers Tier 0/1/2 separation, privileged access workstations (PAWs), administrative f

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Harden LDAP directory services against common attacks including credential harvesting, LDAP injection, anonymous binding, and channel binding bypass. Covers LDAPS enforcement, channel binding, LDAP si

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy Cisco Duo multi-factor authentication across enterprise applications, VPN, RDP, and SSH access points. This skill covers Duo integration methods, adaptive authentication policies, device trust

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure secure OAuth 2.0 authorization flows including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant. This skill covers flow selection, PKCE implementation, token

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Detects anomalous authentication patterns using UEBA analytics, statistical baselines, and machine learning models to identify impossible travel, credential stuffing, brute force, password spraying, and compromised account behaviors across authentication…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure IAM permission boundaries in AWS to delegate role creation to developers while enforcing maximum privilege limits set by the security team.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure Microsoft Entra Privileged Identity Management to enforce just-in-time role activation, approval workflows, and access reviews for Azure AD privileged roles.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure Microsoft Entra ID (Azure AD) Conditional Access policies for zero trust access control. Covers signal-based policy design, device compliance requirements, risk-based authentication, named l

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implements Delinea Secret Server for privileged access management (PAM) including secret vault configuration, role-based access policies, automated password rotation, session recording, and integration with Active Directory and cloud platforms. Activates for…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implements comprehensive Google Workspace security hardening including admin console configuration, phishing-resistant MFA enforcement, DLP policies, email authentication (SPF/DKIM/DMARC), OAuth app control, and external sharing restrictions. Activates for…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure SAML 2.0 single sign-on for Google Workspace with a third-party identity provider, enabling centralized authentication and enforcing organization-wide access policies.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implements FIDO2/WebAuthn hardware security key authentication including registration ceremonies, authentication flows, YubiKey enrollment, and passkey migration strategies. Builds a complete relying party server using the python-fido2 library that supports…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implements HashiCorp Vault dynamic secrets engines for database credentials, AWS IAM keys, and PKI certificates with automatic generation, lease management, and credential rotation to eliminate static secrets in application configurations. Activates for…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy SailPoint IdentityNow or IdentityIQ for identity governance and administration. Covers identity lifecycle management, access request workflows, certification campaigns, role mining, SOD policy

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implement Just-In-Time (JIT) access provisioning to eliminate standing privileges by granting temporary, time-bound access only when needed. This skill covers JIT architecture design, approval workflo

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy privileged access management for database systems including Oracle, SQL Server, PostgreSQL, and MySQL. Covers session proxy configuration, credential vaulting, query auditing, dynamic credentia

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implements passwordless authentication using Microsoft Entra ID with FIDO2 security keys, Windows Hello for Business, Microsoft Authenticator passkeys, and certificate-based authentication to eliminate password-based attacks. Activates for requests involving…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy FIDO2/WebAuthn passwordless authentication using security keys and platform authenticators. Covers WebAuthn API integration, FIDO2 server configuration, passkey enrollment, biometric authentica

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy CyberArk Privileged Access Management to discover, vault, rotate, and monitor privileged credentials across enterprise infrastructure. This skill covers vault architecture, session isolation, c

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Design and implement Privileged Access Workstations (PAWs) with device hardening, just-in-time access, and integration with CyberArk or BeyondTrust for secure administrative operations.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implements privileged session monitoring and recording using Privileged Access Management (PAM) solutions, focusing on CyberArk Privileged Session Manager (PSM) and open-source alternatives. Covers session recording configuration, keystroke logging, real-time…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implement SAML 2.0 Single Sign-On (SSO) using Okta as the Identity Provider (IdP). This skill covers end-to-end configuration of SAML authentication flows, attribute mapping, certificate management, a

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implement automated user provisioning and deprovisioning using SCIM 2.0 protocol with Okta as the identity provider.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy CyberArk Secure Cloud Access to eliminate standing privileges in hybrid and multi-cloud environments using just-in-time access with time, entitlement, and approval controls.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure and execute access recertification campaigns in Saviynt Enterprise Identity Cloud to validate user entitlements, revoke excessive access, and maintain compliance with SOX, SOC2, and HIPAA.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conduct systematic access reviews and certifications to ensure users have appropriate access rights aligned with their roles. This skill covers review campaign design, reviewer selection, risk-based p

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Performs entitlement review and access certification campaigns using SailPoint IdentityIQ including manager certifications, targeted entitlement reviews, role-based access validation, SOD violation remediation, and automated revocation workflows. Activates…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Performs OAuth 2.0 scope minimization review to identify over-permissioned third-party application integrations, excessive API scopes, unused token grants, and risky OAuth consent patterns across identity providers and SaaS platforms. Activates for requests…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conduct systematic reviews of privileged accounts to validate access rights, identify excessive permissions, and enforce least privilege across PAM infrastructure.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Discover and inventory all privileged accounts across enterprise infrastructure including domain admins, local admins, service accounts, database admins, cloud IAM roles, and application admin account

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Audit service accounts across enterprise infrastructure to identify orphaned, over-privileged, and non-compliant accounts. This skill covers discovery of service accounts in Active Directory, cloud pl

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Automate credential rotation for service accounts across Active Directory, cloud platforms, and application databases to eliminate stale secrets and reduce compromise risk.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Uses the Linux Audit framework (auditd) with ausearch and aureport utilities to detect intrusion attempts, unauthorized access, privilege escalation, and suspicious system activity. Covers audit rule configuration, log querying, timeline reconstruction, and…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Analyzes network traffic captures and flow data to identify adversary activity during security incidents, including command-and-control communications, lateral movement, data exfiltration, and exploitation attempts. Uses Wireshark, Zeek, and NetFlow analysis…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Designs and documents structured incident response playbooks that define step-by-step procedures for specific incident types aligned with NIST SP 800-61r3 and SANS PICERL frameworks. Covers playbook structure, decision trees, escalation criteria, RACI…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Build collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source event data for attack chain reconstruction and investigation documentation.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Build structured communication templates for malware incidents including stakeholder notifications, executive briefings, technical advisories, and regulatory disclosures with severity-based escalation procedures.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Systematically collects, categorizes, and distributes indicators of compromise (IOCs) during and after security incidents to enable detection, blocking, and threat intelligence sharing. Covers network, host, email, and behavioral indicators using STIX/TAXII…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Collect volatile forensic evidence from a compromised system following order of volatility, preserving memory, network connections, processes, and system state before they are lost.

원문 언어: 영어

업데이트
수집된 skill 855개 중 40개를 표시합니다.