Skip to main content

这个仓库中的 skills

CyberStrikeus/CyberStrike - 第 50 页

SkillsMP 已收集 CyberStrikeus/CyberStrike 中的 7,442 个 Skill。打开任一 Skill 可查看来源和详情。

CyberStrikeus/CyberStrike

已展示 40 / 7,442 个已收集 Skill。

职业分类
信息安全分析师
描述

Ensure that the cluster enforces Pod Security Standard Baseline profile or stricter for all namespaces (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure that all Namespaces have Network Policies defined (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Consider external secret storage (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Configure Image Provenance using ImagePolicyWebhook admission controller (Manual)

原文语言:英语

更新
职业分类
网络与计算机系统管理员
描述

Create administrative boundaries between resources using namespaces (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure that the seccomp profile is set to RuntimeDefault in the pod definitions (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Apply Security Context to Pods and Containers (Manual)

原文语言:英语

更新
职业分类
网络与计算机系统管理员
描述

The default namespace should not be used (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure Image Vulnerability Scanning is enabled (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Minimize user access to Container Image repositories (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Minimize cluster access to read-only for Container Image repositories (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure only trusted container images are used (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure GKE clusters are not running using the Compute Engine default service account (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure Kubernetes Secrets are encrypted using keys managed in Cloud KMS (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Enable VPC Flow Logs and Intranode Visibility (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure Control Plane Authorized Networks is Enabled (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure clusters are created with Private Nodes (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure use of Google-managed SSL Certificates (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Manage Kubernetes RBAC users with Google Groups for GKE (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Enable Customer-Managed Encryption Keys (CMEK) for GKE Persistent Disks (PD) (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure that the cluster-admin role is only used where required (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Avoid non-default bindings to system:authenticated (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Minimize wildcard use in Roles and ClusterRoles (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure that default service accounts are not actively used (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure that Service Account Tokens are only mounted where necessary (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Avoid use of system:masters group (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Limit use of the Bind, Impersonate and Escalate permissions in the Kubernetes cluster (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Avoid bindings to system:anonymous (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Avoid non-default bindings to system:unauthenticated (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure that the cluster enforces Pod Security Standard Baseline profile or stricter for all namespaces (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure that all Namespaces have Network Policies defined (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Consider external secret storage (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Configure Image Provenance using ImagePolicyWebhook admission controller (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Create administrative boundaries between resources using namespaces (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Ensure that the seccomp profile is set to RuntimeDefault in the pod definitions (Automated)

原文语言:英语

更新
职业分类
信息安全分析师
描述

Apply Security Context to Pods and Containers (Manual)

原文语言:英语

更新
职业分类
信息安全分析师
描述

The default namespace should not be used (Automated)

原文语言:英语

更新
已展示 40 / 7,442 个已收集 Skill。