information-security-security-strategist

Develop enterprise security strategy and governance frameworks for mid-to-large organizations.

110|19|Updated Feb 11, 2026
One-click install
npx skills add https://github.com/chendongqi/OPB-Skills --skill information-security-security-strategist
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: information-security-security-strategist
Source: https://github.com/chendongqi/OPB-Skills/tree/main/skills/information-security-security-strategist
Command: npx skills add https://github.com/chendongqi/OPB-Skills --skill information-security-security-strategist

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Translating business goals into a comprehensive security program is complex; this Skill provides a structured approach to strategic planning, architecture, policy development, and governance to align security with business objectives.

Core Features & Use Cases

  • Security strategy planning and governance alignment with business objectives
  • Security architecture design using SABSA and zero-trust principles
  • Policy and governance development including standards and procedures
  • Compliance mapping and program setup for ISO27001 and related frameworks
  • Risk assessment, maturity evaluation, and security training planning

Quick Start

Run the security-strategy-writer to draft an enterprise security strategy aligned with business goals.

Frequently Asked Questions about information-security-security-strategist

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I develop an enterprise security strategy aligned with business objectives?

Enterprise security strategy development translates business goals into a structured security program using governance frameworks, zero-trust architecture principles, and risk assessment templates to align security controls with organizational objectives.

Can I use SABSA and zero-trust principles for security architecture design?

SABSA and zero-trust principles are applied during security architecture design to model structured enterprise frameworks, enabling risk mitigation and governance alignment for mid-to-large organizations.

What is the best way to map compliance for ISO27001 and related frameworks?

Compliance mapping for ISO27001 and related frameworks involves drafting security policies, setting up governance standards, and evaluating maturity to ensure enterprise security programs meet regulatory requirements.

How do I perform a security risk assessment and maturity evaluation?

Security risk assessment and maturity evaluation utilize structured templates to analyze governance gaps, measure compliance against ISO27001, and identify zero-trust architecture weaknesses for mid-to-large organizations.

Does this approach support security policy drafting and training planning?

Security policy drafting and training planning are supported through structured governance development, allowing organizations to create standards, procedures, and educational programs aligned with enterprise security strategy.