Michael Haag
Community@mhaggis
Agent Skills by Michael Haag
Showing 15 vetted skills indexed across 1 GitHub repositories.
Custom Atomics Deployment
Create, deploy, and execute custom Atomic Red Team YAML tests.
Atomic Red Team Testing
Execute and validate Atomic Red Team adversary emulation tests across SIEMs.
detection-test-engineer
Generate and execute security detection test scenarios across SIEM platforms.
Supply Chain Attack Analyst
Analyze software supply chain attacks and generate SIEM detection rules.
detection-coverage-analysis
Analyze security detection coverage against MITRE ATT&CK using Sigma, Splunk, and Elastic rules.
Data Source Mapper
Map MITRE ATT&CK techniques to data sources across SIEM schemas.
PR Extension Workflow
Analyze pull requests for security detection coverage gaps and recommend extensions.
detection-yaml-engineer
Generate and validate security detection rules for Splunk, Sigma, Elastic, and KQL.
detection-reviewer
Validate security detection rules in SPL, KQL, Sigma, and Elastic formats.
Test Environment Builder
Build adversary emulation lab environments across Splunk, Elastic Security, and Microsoft Sentinel.
cti-detection-engineer
Generate multi-SIEM detection logic from threat intelligence and MITRE ATT&CK mappings.
ATT&CK Navigator Layer Generator
Generate MITRE ATT&CK Navigator JSON layers for detection coverage and gap analysis.
threat-report-parser
Parse threat reports and generate SIEM-specific detection rules mapped to MITRE ATT&CK.
Analytic Story Builder
Create grouped detection narratives in Splunk ESCU YAML format.
Detection Query Optimizer
Optimize Splunk SPL, Microsoft Sentinel KQL, and Elastic Security EQL/ES|QL detection queries.