
Claude Skills by 26zl
github.com/26zl'This skill covers implementing a structured patch management program
PCI DSS 4.0.1 establishes 12 requirements across 6 control objectives
Implement Kubernetes Pod Security Admission to enforce baseline and restricted
'This skill covers implementing Open Policy Agent (OPA) and Gatekeeper
Deploy CyberArk Privileged Access Management to discover, vault, rotate,
Design and implement Privileged Access Workstations (PAWs) with device
'Implements privileged session monitoring and recording using Privileged
Deploy and configure Proofpoint Email Protection as a secure email gateway
'Implement network segmentation based on the Purdue Enterprise Reference
'Designs and implements a ransomware-resilient backup strategy following
'Detects and exploits ransomware kill switch mechanisms including mutex-based
Deploy and configure Rapid7 InsightVM Security Console and Scan Engines
Harden Kubernetes Role-Based Access Control by implementing least-privilege
RSA (Rivest-Shamir-Adleman) is the most widely deployed asymmetric cryptographic
Implement eBPF-based runtime security observability and enforcement in
Implement SAML 2.0 Single Sign-On (SSO) using Okta as the Identity Provider
Implement automated user provisioning and deprovisioning using SCIM 2.0
'This skill covers deploying HashiCorp Vault for centralized secrets
'Create, validate, and share STIX 2.1 threat intelligence objects using
Write multi-event correlation rules that detect APT lateral movement
Tune SIEM detection rules to reduce false positives by analyzing alert
'Implements Sigstore-based software signing and verification using Cosign
Automate phishing incident response using Splunk SOAR REST API to create
Implement automated incident response playbooks in Cortex XSOAR to orchestrate
STIX (Structured Threat Information eXpression) and TAXII (Trusted Automated
Implement software supply chain integrity verification for container
Configure rsyslog for centralized log collection with TLS encryption,
Deploy and configure an OpenTAXII server to share and consume STIX-formatted
Implement a structured threat intelligence lifecycle encompassing planning,
Deploy and operate Greenbone/OpenVAS vulnerability management using the
Vulnerability remediation SLAs define mandatory timeframes for patching
Build automated alerting for vulnerability remediation SLA breaches with
'Configure ModSecurity WAF with OWASP Core Rule Set (CRS) for web application
Zero-Knowledge Proofs (ZKPs) allow a prover to demonstrate knowledge
Deploy CyberArk Secure Cloud Access to eliminate standing privileges
Implement NextDNS as a zero trust DNS filtering layer with encrypted
'Implementing zero trust access controls for SaaS applications using
'This skill guides organizations through implementing zero trust architecture
Implement Zero Trust Network Access using Zscaler Private Access (ZPA)
'Implementing Zero Trust Network Access (ZTNA) in cloud environments
Deploy Google BeyondCorp Enterprise zero trust access controls using
Implement HashiCorp Boundary for identity-aware zero trust infrastructure
Detects fail-open insecure defaults (hardcoded secrets, weak auth, permissive security) that allow apps to run insecurely in production. Use when auditing security, reviewing config management, or analyzing environment variable handling.
'This skill covers integrating OWASP ZAP (Zed Attack Proxy) for Dynamic
'This skill covers integrating Static Application Security Testing (SAST)
'Investigates phishing email incidents from initial user report through
Identify, collect, and analyze ransomware attack artifacts to determine
Use for IoT, embedded, firmware, hardware security, UART/JTAG/SWD, bootloader, secure boot, OTA update, radio protocol, device cloud, mobile companion app, and embedded Linux assessment work.
Behavioral coding-agent guidelines to reduce common LLM coding mistakes. Use when writing, reviewing, or refactoring code to avoid overcomplication, make surgical changes, surface assumptions, and define verifiable success criteria.
Use for mainframe, z/OS, RACF, ACF2, Top Secret, CICS, IMS, DB2, JCL, JES, APF libraries, USS, TN3270, privileged dataset, and legacy enterprise security assessment work.