briiirussell
Community@briiirussell · San Diego, CA
Agent Skills by briiirussell
Showing 29 vetted skills indexed across 1 GitHub repositories.
disk-forensics
Recover deleted files and reconstruct unified timelines from disk images.
web-pentest
Conduct authorized black-box or grey-box penetration tests of live web applications.
api-audit
Audit REST, GraphQL, and RPC endpoints against OWASP API Security Top 10.
pci-audit
Audit payment card environments against PCI DSS v4.0 requirements.
siem-detection
Assess log source coverage, author Sigma rules, and translate to SIEM query languages.
privacy-engineering
Implement and audit privacy controls for GDPR and CCPA requirements.
red-team-engagement
Plan and coordinate authorized red-team engagements with ATT&CK emulation and reporting.
incident-triage
Classify security incidents and produce initial triage plans with NIST SP 800-61r2 methodology.
security-comms
Translate technical cybersecurity findings into stakeholder-ready communication for non-security audiences.
csf-mapping
Map cybersecurity programs to NIST CSF 2.0 and produce tiered gap analyses.
cloud-audit
Audit AWS, GCP, and Azure infrastructure for security misconfigurations and logging gaps.
secrets-audit
Detect leaked credentials in repositories, Git history, and build artifacts.
soc-operations
Guide Security Operations Center design and alert triage with runbooks and KPIs.
mobile-audit
Audit iOS and Android apps against OWASP MASVS and MASTG.
dependency-audit
Audit project dependencies and lockfiles for known CVEs and supply-chain risks.
threat-modeling
Create a Data Flow Diagram and analyze threats with STRIDE for design-time security reviews.
threat-hunting
Conduct hypothesis-driven threat hunts in SIEM/EDR logs using PEAK workflows.
owasp-audit
Audit application source code against OWASP Top 10 (2021) categories.
hipaa-audit
Audits PHI/ePHI handling against HIPAA Security, Privacy, and Breach Notification rules.
crypto-audit
Audits cryptography implementations for insecure algorithms, modes, and usage patterns.
container-audit
Audit container images and Kubernetes manifests for security misconfigurations and secret leakage.
vuln-research
Assess CVE applicability, exploitability, and remediation options for specific environments.
osint-recon
Correlate public-source intelligence into structured OSINT reports with confidence scoring.
finding-triage
Triage security findings into defensible dispositions with mitigation plans or false-positive justifications.