infrastructure-security

Assess and harden infrastructure against vulnerabilities and configuration weaknesses.

Updated May 22, 2026
One-click install
npx skills add https://github.com/drupadsachania/aegis-skills --skill infrastructure-security-drupadsachania
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: infrastructure-security
Source: https://github.com/drupadsachania/aegis-skills/tree/main/skills/infrastructure-security
Command: npx skills add https://github.com/drupadsachania/aegis-skills --skill infrastructure-security-drupadsachania

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

Systematically assess and harden infrastructure — servers, cloud workloads, containers, and network devices — against known vulnerabilities and configuration weaknesses.

Core Features & Use Cases

  • Phase-based assessment framework spanning asset discovery, configuration baseline, patch management, hardening controls, and compliance validation.
  • References content to support deep-dive analysis and generate artifact outputs per phase.
  • Applies across enterprise, cloud, hybrid, and on-premises environments for CIS Benchmark, NIST CSF, and MITRE-ATT&CK alignment.

Quick Start

Load a phase by name to begin the infrastructure-security workflow, e.g., asset-discovery.

Frequently Asked Questions about infrastructure-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I systematically assess and harden infrastructure against configuration weaknesses?

Infrastructure security assessment follows a phased workflow: asset discovery, configuration baseline, patch management, hardening controls, and compliance validation, producing artifact outputs and cross-reference documents for each phase.

What is the best way to align cloud workloads and servers with CIS Benchmarks?

Aligning cloud workloads and servers with CIS Benchmarks requires running hardening controls and configuration baselines across enterprise, cloud, hybrid, and on-premises environments to validate CIS compliance.

Does this infrastructure security workflow support hybrid and on-premises environments?

Yes, infrastructure security assessment explicitly supports enterprise, cloud, hybrid, and on-premises environments, assessing servers, cloud workloads, containers, and network devices for vulnerabilities and configuration weaknesses.

How do I start an asset discovery phase for infrastructure patch management?

Start asset discovery for patch management by loading the asset-discovery phase by name to systematically identify assets before applying patch management and hardening controls.

Can I use this approach to validate NIST CSF compliance for network devices?

Yes, you can validate NIST CSF compliance for network devices by running the compliance validation phase, which supports NIST CSF and MITRE-ATT&CK alignment alongside CIS Benchmarks across your infrastructure.

When do I need a phase-based framework for infrastructure hardening sprints?

You need a phase-based framework for infrastructure hardening sprints when you must systematically assess servers, cloud workloads, containers, and network devices across hybrid environments to ensure CIS/NIST compliance and patch management.