Orca Security
Official@orcasecurity
Provides comprehensive cloud security posture management, identity governance, and risk remediation analysis for enterprise infrastructure environments.
Agent Skills by Orca Security
Showing 11 vetted skills indexed across 1 GitHub repositories.
orca-asset-profile
Generate a 360° security profile for cloud assets by name, ID, or ARN.
orca-investigate
Trace actor activity from cloud audit logs into session timelines with MITRE ATT&CK mappings.
orca-data-exposure
Discover and prioritize sensitive data exposure across environments.
orca-compliance-gap
Analyze and rank compliance gaps across frameworks by account and asset.
orca-identity-review
Identify overprivileged AWS cloud identities by comparing granted permissions with CloudTrail usage.
orca-exposure-map
Map external attack surface with exposure vectors and risk rankings.
orca-config-origin
Traces Orca alerts to their origin via metadata, code origins, and audit logs.
orca-cloud-cost-optimizer
Analyze Orca MCP asset data and live pricing to identify cloud cost optimization opportunities.
orca-impact-analysis
Model remediation impact for Orca alerts across environments.
orca-alert-triage
Convert Orca Security alerts into triage summaries with timelines and risk assessments.
orca-morning-briefing
Compile critical alerts, attack path changes, and compliance drift into a daily security briefing.
Frequently Asked Questions About Orca Security
FAQPage SchemaWhat specific security tasks can be performed using these capabilities?▼
These capabilities enable 360-degree asset profiling, sensitive data exposure discovery, and compliance gap ranking. Users can trace actor activity through audit logs, map external attack surfaces, and model the impact of remediation efforts across complex cloud environments.
Which personas benefit most from these security functions?▼
Cloud security engineers, identity and access management specialists, and compliance officers are the primary users. These functions assist technical teams in prioritizing vulnerabilities, auditing cloud permissions, and maintaining continuous regulatory alignment across multi-account infrastructures.
What are the prerequisites for implementing these security insights?▼
Implementation requires an active connection to cloud provider environments, specifically access to audit logs like CloudTrail and metadata from cloud assets. Users must ensure proper read-only permissions are configured to allow the ingestion of asset profiles, configuration origins, and identity usage data.