security-compliance

Delivers enterprise-grade threat modeling and secure SDLC workflows with a 30%+ reduction in reported vulnerabilities.

1|Updated Mar 10, 2026
One-click install
npx skills add https://github.com/archonai-lab/archon --skill security-compliance-archonai-lab
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: security-compliance
Source: https://github.com/archonai-lab/archon/tree/main/.claude/skills/security-compliance
Command: npx skills add https://github.com/archonai-lab/archon --skill security-compliance-archonai-lab

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

The Security & Compliance Expert consolidates defense-in-depth security practices with regulatory readiness, helping teams design secure architectures, perform threat modeling and risk assessments, manage security operations and incident response, and embed security across the SDLC.

Core Features & Use Cases

  • Security Architecture: Zero Trust, data protection, and cloud security alignment across frameworks.
  • Compliance & Audit Readiness: SOC 2, ISO27001, GDPR, HIPAA, PCI-DSS mapping and evidence collection.
  • Threat Modeling & Risk Management: STRIDE/PASTA threat modeling, risk registers, and quantitative/qualitative assessments.
  • Security Operations & DevSecOps: SOC playbooks, SIEM/EDR integration, vulnerability management, and secure development lifecycle practices.

Quick Start

Proceed by reading SKILL.md to learn core principles, then review reference materials to begin applying threat modeling and risk assessment practices.

Frequently Asked Questions about security-compliance

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate SOC2 and ISO27001 audit readiness and evidence collection?

Threat modeling identifies potential security threats using methodologies like STRIDE or PASTA during architecture design. This Skill applies these frameworks to help teams systematically assess and mitigate risks before implementation.

How do I calculate risk assessments using SLE and ALE for security programs?

Embedding security across the Software Development Life Cycle (SDLC) requires integrating vulnerability management and secure coding practices into every development phase. This Skill automates DevSecOps workflows to ensure continuous security operations throughout delivery.

Can I use this for Zero Trust architecture and cloud security alignment?

Yes, it is designed for scalable deployments and enterprise security programs. The Skill handles threat modeling, risk calculations, and evidence collection workflows required by complex organizations managing multiple compliance frameworks simultaneously.

What is the best way to integrate SIEM and EDR for security operations playbooks?

Integrating SIEM and EDR for security operations involves creating structured incident response playbooks that correlate detection data. This Skill provides SOC playbooks and vulnerability management workflows to automate security operations.