Skip to main content

这个仓库中的 skills

autohandai/community-skills - 第 18 页

SkillsMP 已收集 autohandai/community-skills 中的 1,040 个 Skill。打开任一 Skill 可查看来源和详情。

autohandai/community-skills

已展示 40 / 1,040 个已收集 Skill。

职业分类
信息安全分析师
描述

Implements passwordless authentication using Microsoft Entra ID with FIDO2 security keys, Windows Hello for Business, Microsoft Authenticator passkeys, and certificate-based authentication to eliminate password-based attacks. Activates for requests involving…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Deploy FIDO2/WebAuthn passwordless authentication using security keys and platform authenticators. Covers WebAuthn API integration, FIDO2 server configuration, passkey enrollment, biometric authentica

原文语言:英语

更新
职业分类
信息安全分析师
描述

Deploy CyberArk Privileged Access Management to discover, vault, rotate, and monitor privileged credentials across enterprise infrastructure. This skill covers vault architecture, session isolation, c

原文语言:英语

更新
职业分类
信息安全分析师
描述

Design and implement Privileged Access Workstations (PAWs) with device hardening, just-in-time access, and integration with CyberArk or BeyondTrust for secure administrative operations.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Configure Azure AD Privileged Identity Management (PIM) using Microsoft Graph API to manage eligible role assignments, just-in-time activation, access reviews, and role management policies for zero-trust privileged access.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Monitor and audit privileged user sessions including SSH, RDP, and database access. Tracks session metadata, records commands, detects anomalous activity, and enforces session policies for PAM compliance.

原文语言:英语

更新
职业分类
网络与计算机系统管理员
描述

Configure Kubernetes Role-Based Access Control (RBAC) to enforce least-privilege access to cluster resources. This skill covers Role/ClusterRole design, RoleBinding configuration, service account secu

原文语言:英语

更新
职业分类
信息安全分析师
描述

Implement SAML 2.0 Single Sign-On (SSO) using Okta as the Identity Provider (IdP). This skill covers end-to-end configuration of SAML authentication flows, attribute mapping, certificate management, a

原文语言:英语

更新
职业分类
信息安全分析师
描述

Implement automated user provisioning and deprovisioning using SCIM 2.0 protocol with Okta as the identity provider.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Deploy and configure Velociraptor for scalable endpoint forensic artifact collection during incident response using VQL queries, hunts, and pre-built artifact packs across Windows, Linux, and macOS environments.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Deploy CyberArk Secure Cloud Access to eliminate standing privileges in hybrid and multi-cloud environments using just-in-time access with time, entitlement, and approval controls.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Configure and execute access recertification campaigns in Saviynt Enterprise Identity Cloud to validate user entitlements, revoke excessive access, and maintain compliance with SOX, SOC2, and HIPAA.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Conduct systematic access reviews and certifications to ensure users have appropriate access rights aligned with their roles. This skill covers review campaign design, reviewer selection, risk-based p

原文语言:英语

更新
职业分类
信息安全分析师
描述

Investigate Active Directory compromise by analyzing authentication logs, replication metadata, Group Policy changes, and Kerberos ticket anomalies to identify attacker persistence and lateral movement paths.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Execute cloud-native incident containment across AWS, Azure, and GCP by isolating compromised resources, revoking credentials, preserving forensic evidence, and applying security group restrictions to prevent lateral movement.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Conducts disk forensics investigations using forensic imaging, file system analysis, artifact recovery, and timeline reconstruction to support incident response cases. Utilizes tools such as FTK Imager, Autopsy, and The Sleuth Kit for evidence acquisition,…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Performs entitlement review and access certification campaigns using SailPoint IdentityIQ including manager certifications, targeted entitlement reviews, role-based access validation, SOD violation remediation, and automated revocation workflows. Activates…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Investigates insider threat incidents involving employees, contractors, or trusted partners who misuse authorized access to steal data, sabotage systems, or violate security policies. Combines digital forensics, user behavior analytics, and HR/legal…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Performs OAuth 2.0 scope minimization review to identify over-permissioned third-party application integrations, excessive API scopes, unused token grants, and risky OAuth consent patterns across identity providers and SaaS platforms. Activates for requests…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Conduct systematic reviews of privileged accounts to validate access rights, identify excessive permissions, and enforce least privilege across PAM infrastructure.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Discover and inventory all privileged accounts across enterprise infrastructure including domain admins, local admins, service accounts, database admins, cloud IAM roles, and application admin account

原文语言:英语

更新
职业分类
信息安全分析师
描述

Execute a structured ransomware incident response including containment, decryption assessment, recovery from backups, and eradication of ransomware persistence mechanisms.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Executes a structured ransomware incident response from initial detection through containment, forensic analysis, decryption assessment, recovery, and post-incident hardening. Addresses ransom negotiation considerations, backup integrity verification, and…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Audit service accounts across enterprise infrastructure to identify orphaned, over-privileged, and non-compliant accounts. This skill covers discovery of service accounts in Active Directory, cloud pl

原文语言:英语

更新
职业分类
信息安全分析师
描述

Automate credential rotation for service accounts across Active Directory, cloud platforms, and application databases to eliminate stale secrets and reduce compromise risk.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Performs initial triage of security incidents to determine severity, scope, and required response actions using the NIST SP 800-61r3 and SANS PICERL frameworks. Classifies incidents by type, assigns priority based on business impact, and routes to appropriate…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Classify and prioritize security incidents using structured IR playbooks to determine severity, assign response teams, and initiate appropriate response procedures.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Create forensically sound bit-for-bit disk images using dd and dcfldd while preserving evidence integrity through hash verification.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Analyze Chromium-based browser artifacts using Hindsight to extract browsing history, downloads, cookies, cached content, autofill data, saved passwords, and browser extensions from Chrome, Edge, Brave, and Opera for forensic investigation.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Perform comprehensive forensic analysis of disk images using Autopsy to recover files, examine artifacts, and build investigation timelines.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Investigate compromised Docker containers by analyzing images, layers, volumes, logs, and runtime artifacts to identify malicious activity and evidence.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Parse and analyze email headers to trace the origin of phishing emails, verify sender authenticity, and identify spoofing through SPF, DKIM, and DMARC validation.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Detect kernel-level rootkits in Linux memory dumps using Volatility3 linux plugins (check_syscall, lsmod, hidden_modules), rkhunter system scanning, and /proc vs /sys discrepancy analysis to identify hooked syscalls, hidden kernel modules, and tampered system…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Examine Linux system artifacts including auth logs, cron jobs, shell history, and system configuration to uncover evidence of compromise or unauthorized activity.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Analyze Windows LNK shortcut files and Jump List artifacts to establish evidence of file access, program execution, and user activity using LECmd, JLECmd, and manual binary parsing of the Shell Link Binary format.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Analyze the NTFS Master File Table ($MFT) to recover metadata and content of deleted files by examining MFT record entries, $LogFile, $UsnJrnl, and MFT slack space using MFTECmd, analyzeMFT, and X-Ways Forensics.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Analyze Microsoft Outlook PST and OST files for email forensic evidence including message content, headers, attachments, deleted items, and metadata using libpff, pst-utils, and forensic email analysis tools for legal investigations and incident response.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Parse Windows Prefetch files to determine program execution history including run counts, timestamps, and referenced files for forensic investigation.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Examine file system slack space, MFT entries, USN journal, and alternate data streams to recover hidden data and reconstruct file activity on NTFS volumes.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Investigate USB device connection history from Windows registry, event logs, and setupapi logs to track removable media usage and potential data exfiltration.

原文语言:英语

更新
已展示 40 / 1,040 个已收集 Skill。