Agent Skills by rifh2000
Showing 46 vetted skills indexed across 1 GitHub repositories.
aws-inspector-expert
Translate AWS Inspector findings into SCF-mapped compliance language for audits.
github-inspector-expert
Map GitHub configuration checks to SCF controls for compliance insights.
gcp-inspector-expert
Translate raw GCP configuration data into SCF-aligned compliance insights.
okta-inspector-expert
Evaluate Okta configurations against SOC 2, NIST, FedRAMP, and PCI frameworks.
code-to-control-mapper
Map Terraform, Kubernetes, and CloudFormation files to compliance controls.
evidence-artifact-collector
Collects point-in-time evidence from AWS, Azure, and GCP into JSON, Markdown, or CSV reports.
audit-ready-pr-reviewer
Audit pull request diffs for SOC 2, ISO 27001, and NIST 800-53 compliance regressions.
policy-as-code-generator
Translate natural-language compliance requirements into OPA Rego, AWS Config Rules, Sentinel, and Terraform policies.
risk-to-jira-transformer
Transform unstructured risk assessments into structured Jira API payloads.
tprm-scorer
Calculate vendor risk scores from inherent and residual risk factors.
vendor-assessor
Automate vendor risk assessments with standardized questionnaires and risk scoring.
questionnaire-analyzer
Identify red flags, gaps, and follow-up needs in vendor security questionnaires.
oscal-expert
Guide OSCAL document authoring, validation, and conversion across seven document types.
risk-register-manager
Maintain a structured risk register with JSON/YAML contracts and scoring.
compliance-tracker
Identify framework compliance gaps and generate remediation plans across SOC 2, ISO 27001, NIST, PCI, and HIPAA.
policy-lifecycle
Automate policy creation, gap analysis, versioning, reviews, and approvals.
ccm-expert
Map CCM v4.0 controls to multi-cloud contexts and deliver a remediation roadmap.
stateramp-expert
Identify and implement StateRAMP authorization activities for state and local government cloud services.
glba-expert
Guide financial institutions in implementing GLBA Safeguards Rule requirements.
fedramp-rev5-expert
Guide FedRAMP Rev 5 authorization with documentation and NIST SP 800-53 control mappings.
pbmm-expert
Analyze cloud deployments for PBMM compliance with ITSG-33 and CCCS requirements.
dora-expert
Navigate EU DORA regulatory requirements for financial entities.
singapore-pdpa-expert
Determine PDPA 2012 scope and applicability for Singapore data processing operations.
iso-expert
Guide ISO 27001 ISMS certification with Annex A mapping and risk assessment.