des-governance-security-design

Transform data governance requirements into an evidence-backed specification for data engineering projects.

2|Updated May 20, 2026
One-click install
npx skills add https://github.com/DKSang/DES-SKILL --skill des-governance-security-design
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: des-governance-security-design
Source: https://github.com/DKSang/DES-SKILL/tree/main/skills/des-governance-security-design
Command: npx skills add https://github.com/DKSang/DES-SKILL --skill des-governance-security-design

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill prevents unsafe or non-compliant data product releases by turning governance, security, privacy, retention, access, and audit requirements into an explicit, evidence-backed specification for data engineering workflows.

Core Features & Use Cases

  • Create Governance & Security Specification: Define governance scope/non-scope, data classification, sensitivity handling, access control model, and protection policies across layers.
  • Design for Auditing, Approval, and Risk Controls: Specify approval workflows, exception handling, audit logging/monitoring, incident response/escalation, and ownership/accountability.
  • Phase-Orchestrated Validation: Produce Phase 19 outputs (support plan, evidence pack, revision, done gate, handoff) and enforce readiness to move forward safely.

Quick Start

Ask an AI agent to run governance and security design for your project using Phase 18 lineage and handoff context to produce the Phase 19 governance/security specification artifact.

Frequently Asked Questions about des-governance-security-design

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I design a data governance specification for a data engineering project?

To design a data governance specification, define governance scope, data classification, access controls, privacy, retention, and audit logging requirements. This transforms sensitivity and compliance needs into an evidence-backed specification across Bronze, Silver, and Gold data layers.

What should be included in an access control and audit logging plan for data products?

An access control and audit logging plan must include data classification, sensitivity handling, protection policies, approval workflows, exception handling, monitoring, and incident response escalation to ensure safe governed data product releases.

Do I need security infrastructure code to implement data governance policies?

No, you do not need security infrastructure code for this design phase. It produces a governance and security specification artifact covering access, privacy, and retention rules without implementing any actual security code or infrastructure.

How do approval workflows and data classification work across data layers?

Approval workflows and data classification apply sensitivity handling and protection policies across Bronze, Silver, Gold, semantic, and serving layers. They enforce accountability and specify exception handling within the governed data product design.

When should I use a phase-orchestrated governance security design model?

Use a phase-orchestrated governance security design model when moving data products through structured phases requiring validation. It produces Phase 19 outputs like support plans, evidence packs, and done gates to enforce readiness before safe handoff.