Skip to content
Back to skills

Us Finra Expert

ASecurity

FINRA Broker-Dealer Cybersecurity Guidance expert. Stub-depth framework plugin that routes to the SCF crosswalk. Level up by adding framework-specific context, assessment workflow, and evidence patterns.

  • 16 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added June 7, 2026
ai-agentsgitsecurity

Security analysis

A100/100

Scanned June 7, 2026

npx -y skills add ThomasMoreAI/legal-skills-open --skill us-finra-expert --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Us Finra Expert?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Us Finra Expert
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/thomasmoreai-us-finra-expert/badge)](https://www.skillsdirectory.com/skills/thomasmoreai-us-finra-expert)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: us-finra-expert
title: FINRA Broker-Dealer Cybersecurity Guidance Expert
description: FINRA Broker-Dealer Cybersecurity Guidance expert. Stub-depth framework plugin that routes to the SCF crosswalk. Level up by adding framework-specific context, assessment workflow, and evidence patterns.
author: GRCEngClub
author_url: https://github.com/GRCEngClub/claude-grc-engineering/tree/main/plugins/frameworks/us-finra/skills/us-finra-expert
license: MIT
version: 0.1.0
execution_mode: open
jurisdiction: us
practice: securities
language: en
---

# FINRA Broker-Dealer Cybersecurity Guidance Expert

Stub-depth expertise for **FINRA Cybersecurity Rules** (builds on SEC Reg S-P and SEC 17a-4). This plugin is scaffolded from the SCF crosswalk (17 SCF controls map to 39 framework controls) and defers to `/grc-engineer:gap-assessment` for the actual compliance check.

## Framework identity

- **SCF framework ID**: `usa-federal-sro-finra`
- **Region**: Americas
- **Country**: US
- **Regulator**: FINRA (Financial Industry Regulatory Authority)
- **Canonical source**: FINRA cybersecurity guidance for broker-dealers

## Scope and posture (placeholder — fill in when leveling up)

TODO: replace with framework-specific overview. Minimum sections for Reference-depth upgrade:

- Territorial scope (who and where the framework applies)
- Controlled-entity obligations (controller, processor, covered entity, etc.)
- Mandatory timelines (breach notification, assessment cadence)
- Regulator and enforcement mechanism
- Interaction with other frameworks (adequacy decisions, mutual recognition)

## Command routing

All commands in this plugin route through `/grc-engineer:gap-assessment` with framework ID `usa-federal-sro-finra`. Reference-depth plugins add:

- `evidence-checklist` — framework-native evidence by control family
- `scope` — applicability determination for the organization

Full-depth plugins add framework-specific workflow commands (examples in sibling plugins like `soc2`, `fedramp-rev5`, `pci-dss`).

## Levelling up

See the [Framework Plugin Guide](../../../../../docs/FRAMEWORK-PLUGIN-GUIDE.md) for the Stub → Reference → Full progression checklist.

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…