
Claude Skills by yanacuti1121
github.com/yanacuti1121Deploy and configure Suricata as a network intrusion prevention system
Kubernetes NetworkPolicies provide pod-level network segmentation by
'This skill covers implementing network segmentation in Operational Technology
Design and implement network segmentation using firewall security zones,
Deploy and query Arkime (formerly Moloch) for full packet capture network
Build network traffic baselines from NetFlow/IPFIX data using Python
Configure and deploy Palo Alto Networks next-generation firewalls with
Enforce Kubernetes admission policies using OPA Gatekeeper with ConstraintTemplates,
'Develop and implement OT-specific incident response playbooks aligned
'Deploy Nozomi Networks Guardian sensors for passive OT network traffic
Deploy privileged access management for database systems including Oracle,
'Implements passwordless authentication using Microsoft Entra ID with
Deploy FIDO2/WebAuthn passwordless authentication using security keys
'This skill covers implementing a structured patch management program
Patch management is the systematic process of identifying, testing, deploying,
PCI DSS 4.0.1 establishes 12 requirements across 6 control objectives
Implement Kubernetes Pod Security Admission to enforce baseline and restricted
'This skill covers implementing Open Policy Agent (OPA) and Gatekeeper
Deploy CyberArk Privileged Access Management to discover, vault, rotate,
Design and implement Privileged Access Workstations (PAWs) with device
'Implements privileged session monitoring and recording using Privileged
Deploy and configure Proofpoint Email Protection as a secure email gateway
'Implement network segmentation based on the Purdue Enterprise Reference
'Designs and implements a ransomware-resilient backup strategy following
'Detects and exploits ransomware kill switch mechanisms including mutex-based
Deploy and configure Rapid7 InsightVM Security Console and Scan Engines
Harden Kubernetes Role-Based Access Control by implementing least-privilege
RSA (Rivest-Shamir-Adleman) is the most widely deployed asymmetric cryptographic
Deploy Runtime Application Self-Protection (RASP) agents to detect and
Implement eBPF-based runtime security observability and enforcement in
Implement SAML 2.0 Single Sign-On (SSO) using Okta as the Identity Provider
Implement automated user provisioning and deprovisioning using SCIM 2.0
'This skill covers implementing Gitleaks for detecting and preventing
'This skill covers deploying HashiCorp Vault for centralized secrets
Integrate gitleaks and trufflehog into CI/CD pipelines to detect leaked
'Implements security chaos engineering experiments that deliberately
'Create, validate, and share STIX 2.1 threat intelligence objects using
'Implements security monitoring using Datadog Cloud SIEM, Cloud Security
Write custom Semgrep SAST rules in YAML to detect application-specific
Write multi-event correlation rules that detect APT lateral movement
Tune SIEM detection rules to reduce false positives by analyzing alert
'Implements SIEM detection use cases by designing correlation rules,
'Implements Sigstore-based software signing and verification using Cosign
'Implements Security Orchestration, Automation, and Response (SOAR) workflows
Automate phishing incident response using Splunk SOAR REST API to create
Implement automated incident response playbooks in Cortex XSOAR to orchestrate
STIX (Structured Threat Information eXpression) and TAXII (Trusted Automated
Implement software supply chain integrity verification for container
Configure rsyslog for centralized log collection with TLS encryption,
Deploy and configure an OpenTAXII server to share and consume STIX-formatted