senior-security

Identify and prioritize security threats using STRIDE and risk scoring.

Updated Apr 9, 2026
One-click install
npx skills add https://github.com/Patasse97/claude-skills --skill senior-security-patasse97
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: senior-security
Source: https://github.com/Patasse97/claude-skills/tree/main/engineering-team/senior-security
Command: npx skills add https://github.com/Patasse97/claude-skills --skill senior-security-patasse97

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

Security teams and developers need a structured, repeatable approach to identify, quantify, and manage security threats across complex systems. This Skill provides a threat modeling toolkit and practical guidance to apply STRIDE, risk scoring, and security patterns throughout architecture design, review, and remediation.

Core Features & Use Cases

  • STRIDE-based threat modeling workflows to identify spoofing, tampering, information disclosure, and more.
  • Threat catalog with concrete mitigations and best practices aligned to architecture layers.
  • Risk scoring and reporting templates to prioritize remediation and track risk over time.
  • Reusable templates and asset references for security reviews, design decisions, and incident response planning.
  • Works across cloud, on-premises, microservices, and API ecosystems.

Quick Start

Provide a threat model for a selected component and generate actionable mitigations.

Frequently Asked Questions about senior-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I perform a STRIDE threat model for a cloud architecture?

To perform STRIDE threat modeling for cloud architectures, you apply the framework to identify spoofing, tampering, repudiation, information disclosure, denial of service, and elevation of privilege threats across cloud, microservices, and API components. The toolkit provides structured workflows to map these threats to specific architecture layers.

What is the best way to prioritize security risks identified during architecture reviews?

The best way to prioritize security risks during architecture reviews is using risk scoring templates. This toolkit provides reporting templates that quantify and rank identified threats, enabling teams to track risk over time and prioritize remediation based on calculated severity.

Can I use this toolkit to generate threat reports and mitigation recommendations for microservices?

Yes, you can generate threat reports and mitigation recommendations for microservices. The toolkit includes a threat catalog with concrete mitigations and best practices aligned to architecture layers, supporting security audits and design reviews across distributed components.

Does this threat modeling approach work for on-premises and networked applications?

This threat modeling approach works across cloud, on-premises, microservices, and API ecosystems. It provides reusable templates and asset references that adapt to various infrastructure types for comprehensive security architecture reviews.

How do I integrate threat modeling outputs with an existing asset inventory?

You can integrate threat modeling outputs with an existing asset inventory using the documented scripts and templates provided. These components support mapping identified threats and mitigations directly to your documented assets for continuous security tracking.