endpoint-security

Automate endpoint security workflows across EDR deployment, hardening, malware analysis, and incident response.

Updated May 22, 2026
One-click install
npx skills add https://github.com/drupadsachania/aegis-skills --skill endpoint-security
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: endpoint-security
Source: https://github.com/drupadsachania/aegis-skills/tree/main/skills/endpoint-security
Command: npx skills add https://github.com/drupadsachania/aegis-skills --skill endpoint-security

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

Endpoint security workflow that orchestrates EDR deployment, baseline hardening, malware analysis, and incident response to reduce detection gaps and manual toil across enterprise endpoints.

Core Features & Use Cases

  • Phase-based workflow with reference-backed steps for EDR deployment, OS hardening, malware triage, and endpoint incident response.
  • Phase references link to dedicated files under references/ to ensure traceability and repeatability.
  • Artifact generation produces actionable outputs (heatmaps, gap evidence, incident timelines) and MCP/OpenAI artifacts for deployment.

Quick Start

Load a phase (for example, edr-deployment) to start the endpoint-security workflow.

Frequently Asked Questions about endpoint-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate endpoint security workflows across enterprise networks with mixed OS environments?

Endpoint security workflows are automated across EDR deployment, baseline hardening, malware analysis, and incident response using phased guidance and artifact generation for enterprise networks with mixed Windows, macOS, and Linux endpoints.

What is the best way to deploy EDR and enforce baseline hardening across mixed operating systems?

EDR deployment and baseline OS hardening are executed through a phase-based workflow with reference-backed steps, generating MCP and OpenAI artifacts to ensure traceable deployment and evaluation across mixed operating systems.

Can I generate actionable incident timelines and malware triage artifacts during endpoint incident response?

Endpoint incident response and malware triage generate actionable artifacts including heatmaps, gap evidence, and incident timelines, with dedicated reference files ensuring repeatability across enterprise endpoints.

Does this endpoint security workflow support phased guidance for deployment and evaluation?

This endpoint security workflow supports four defined phases with per-phase references linking to dedicated files under the references directory, ensuring structured deployment, malware analysis, and evaluation.

Why do I need phased references for endpoint incident response and malware analysis?

Phased references ensure traceability and repeatability during endpoint incident response and malware analysis by linking dedicated reference files to each defined workflow phase, reducing manual toil and detection gaps.