cyber-ir-playbook
Generate incident response timelines and structured report packs from event logs to facilitate efficient detection-to-recovery tracking.
Discover reusable agent skills, browse implementation details, and find the right skill for your workflow.
95 skills found
Generate incident response timelines and structured report packs from event logs to facilitate efficient detection-to-recovery tracking.
Performs end-to-end OT/ICS threat modeling using Microsoft TMT exports and model files, mapping threats to MITRE ATT&CK for ICS, CWE, and CVSS v4.0 with automated risk-based prioritization.
Monitor Runwall security posture, enabled guardrails, and recent audit logs for Claude Code, Codex, and MCP-based development environments.
World-class senior data engineering skill for building scalable data pipelines, ETL/ELT systems, and modern data infrastructure using Python, Spark, dbt, and Kafka.
Implement PCI DSS compliance for secure payment processing, cardholder data protection, and audit preparation using standardized security patterns.
Expert code reviewer for Rust projects. Performs comprehensive quality, security, performance, and architectural analysis using Bazel and project-specific conventions.
Bootstrap CISO Assistant environments by guiding users through organizational structure setup, framework selection, and initial risk assessment configuration using MCP tools.
Perform deep security analysis on codebases using CodeQL for interprocedural data flow, taint tracking, and automated vulnerability detection across multiple languages.
Expert Swift code review for macOS/iOS. Detects memory leaks, threading bugs, concurrency issues, and accessibility gaps using parallel analysis agents.
Analyze C++ code for real-time safety violations including heap allocations, locks, blocking calls, and non-deterministic operations in high-performance audio threads.
Map the attack surface of smart contract codebases by identifying and categorizing state-changing entry points.
Diagnose and resolve connection, sync, subscription, and type issues in Dojo.js applications. Use for troubleshooting Torii, entity queries, and state updates.