Zero Trust Maturity Assessor

Assess zero-trust maturity against CISA ZTMM and generate a gap-and-roadmap report.

6|Updated Oct 25, 2025
One-click install
npx skills add https://github.com/williamzujkowski/cognitive-toolworks --skill zero-trust-maturity-assessor
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: Zero Trust Maturity Assessor
Source: https://github.com/williamzujkowski/cognitive-toolworks/tree/main/skills/security-zerotrust-assessor
Command: npx skills add https://github.com/williamzujkowski/cognitive-toolworks --skill zero-trust-maturity-assessor

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Evaluate zero-trust architecture maturity using the CISA ZTMM framework to identify gaps and generate a prioritized roadmap for improvement.

Core Features & Use Cases

  • Pillar-based maturity assessment across identity, device, network, application, and data.
  • Gap analysis with actionable initiatives and a prioritized roadmap.
  • Compliance alignment with CISA and NIST standards for governance and planning.

Quick Start

Run the skill with your organization's data to generate a ZTMM assessment and roadmap.

Frequently Asked Questions about Zero Trust Maturity Assessor

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I assess zero-trust maturity against the CISA ZTMM framework?

Assess zero-trust maturity against the CISA ZTMM framework by evaluating identity, device, network, application, and data pillars to produce a structured gap analysis and a prioritized roadmap for improvement.

What is a zero-trust maturity assessment and why is it needed for security architecture?

A zero-trust maturity assessment identifies security architecture gaps across core pillars by measuring current capabilities against CISA ZTMM standards, enabling governance, risk mitigation, and structured migration planning.

Can I generate a zero-trust roadmap that aligns with both CISA and NIST compliance standards?

Yes, you can generate a zero-trust roadmap aligned with CISA and NIST standards that delivers pillar-specific maturity levels, actionable gap-initiatives, and a phased migration plan for compliance and governance planning.

How do I get started with a ZTMM gap analysis for my organization's security pillars?

Start a ZTMM gap analysis by providing your organization's security data across identity, device, network, application, and data pillars to automatically generate maturity levels and timestamped roadmap outputs.

Does the zero-trust maturity assessment require any external dependencies or specific platform components?

The zero-trust maturity assessment operates independently without external dependencies or specific platform components, processing your organizational security data directly to generate CISA ZTMM 2.0 aligned reports.

What is the best way to prioritize zero-trust initiatives for security architecture migration?

The best way to prioritize zero-trust initiatives is using a CISA ZTMM maturity assessment that evaluates pillar gaps and generates a phased roadmap with actionable initiatives tailored to your security architecture migration planning.