program-portfolio-composition

Aggregate cross-framework findings into a three-view portfolio report with appendix.

367|83|Updated Dec 26, 2025
One-click install
npx skills add https://github.com/GRCEngClub/claude-grc-engineering --skill program-portfolio-composition-grcengclub
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: program-portfolio-composition
Source: https://github.com/GRCEngClub/claude-grc-engineering/tree/main/plugins/grc-reporter/skills/program-portfolio-composition
Command: npx skills add https://github.com/GRCEngClub/claude-grc-engineering --skill program-portfolio-composition-grcengclub

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Synthesizes and condenses cross-framework findings into a single, readable portfolio view that executives can act on.

Core Features & Use Cases

  • 3 views: Coverage table (one row per framework) that summarizes each framework's status; Leverage list to identify cross-framework patterns; Watch list to flag at-risk items.
  • Appendix carries per-framework full gap reports, SCF-to-framework crosswalk identifiers, and a connector inventory for quick reference.
  • Scoped for multi-framework reports where the goal is portfolio-level clarity rather than verbose, framework-specific detail.

Quick Start

Summarize cross-framework findings into a concise, portfolio-style report suitable for executives.

Frequently Asked Questions about program-portfolio-composition

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I summarize cross-framework findings into an executive summary?

To produce an executive summary, aggregate and normalize cross-framework findings into a concise portfolio report. This provides a high-level portfolio view featuring a coverage table, leverage list, and watch list for executive consumption.

What is a cross-framework gap analysis and when do I need it?

A cross-framework gap analysis identifies at-risk items and leverage patterns across multiple frameworks. You need it when consolidating verbose, framework-specific findings into a single, readable portfolio view that executives can act on.

How do I generate a portfolio-level coverage table from multiple framework reports?

Generate a portfolio-level coverage table by aggregating multiple framework reports into one row per framework. This summarizes each framework's status and flags at-risk items on a watch list for quick executive review.

Does this portfolio composition include SCF-to-framework crosswalk mappings?

Yes, portfolio composition includes SCF-to-framework crosswalk mappings. These mappings, along with per-framework gap reports and a connector inventory, are appended to the main portfolio views for quick reference.

Can I use this for a single-framework report or is it strictly for multi-framework scope?

This is scoped for multi-framework reports where the goal is portfolio-level clarity. It normalizes cross-framework findings rather than providing verbose, framework-specific detail, making it less suitable for single-framework use cases.

What is the best way to identify cross-framework patterns in my security findings?

The best way to identify cross-framework patterns is through a leverage list. This approach normalizes aggregated findings to highlight overlapping patterns across frameworks, alongside a coverage table and watch list for at-risk items.