gap-analysis

Analyze AWS environments for SOC 2 control gaps and remediation guidance.

145|28|Updated Apr 4, 2026
One-click install
npx skills add https://github.com/transilienceai/shasta --skill gap-analysis-transilienceai
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: gap-analysis
Source: https://github.com/transilienceai/shasta/tree/main/.claude/skills/gap-analysis
Command: npx skills add https://github.com/transilienceai/shasta --skill gap-analysis-transilienceai

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill automates a SOC 2 gap analysis against an AWS account, surfacing control gaps and providing remediation guidance to accelerate compliance readiness.

Core Features & Use Cases

  • Scan orchestration across connected AWS accounts to identify SOC 2 control gaps.
  • Reuse recent scans when available to save time, or run a fresh scan to collect up-to-date findings.
  • Generate auditor-ready reports with remediation steps and prioritized fixes to guide governance discussions.

Quick Start

Invoke this skill against your connected AWS account to run a SOC 2 gap analysis and view actionable remediation guidance.

Frequently Asked Questions about gap-analysis

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I perform a SOC 2 gap analysis on my AWS environment?

Run a SOC 2 gap analysis by invoking this Skill against your connected AWS account to identify control deficiencies. It requires a shasta.config.json with python_cmd and access to the AWS account to orchestrate scans and generate remediation reports.

What is SOC 2 gap analysis with remediation guidance?

SOC 2 gap analysis with remediation guidance is an automated process that scans AWS resources to surface compliance control gaps and prioritize fixes. It provides an auditable inventory of deficiencies and actionable steps to accelerate compliance readiness.

Can I reuse recent AWS compliance scans instead of running a fresh scan?

Yes, you can reuse recent AWS compliance scans to save time when available. The Skill can also run a fresh scan against your connected AWS account to collect up-to-date findings for accurate SOC 2 gap analysis reporting.

Do I need a shasta.config.json file to run AWS compliance scans?

Yes, you need a shasta.config.json file containing a python_cmd to run AWS compliance scans. The Skill also requires access to the AWS account and the Shasta data store to extract scan results and generate governance reports.

Does the SOC 2 gap analysis tool generate auditor-ready reports?

Yes, the SOC 2 gap analysis tool generates auditor-ready reports with remediation steps and prioritized fixes. These reports guide governance discussions and provide an auditable inventory of controls across your AWS cloud resources.