197 tools found
Skill for risk registers - essential fields, a 5x5 probability-impact matrix, Excel formulas, and stakeholder views.
Writes secure AWS S3 bucket policies: least privilege, cross-account access, CloudFront OAI, and condition-based restrictions.
A skill that configures SAST scanning across CI/CD - GitHub Actions or Jenkins, custom Semgrep/CodeQL rules, and severity policy.
SCA Configuration Expert sets up Snyk, FOSSA, and Trivy scanning with license policy, SBOM generation, and CI gates.
A secrets-detection skill for writing regex rules with entropy scoring, whitelist/path exclusions, service-specific patterns, and CI/CD scanning.
A secrets management expert that implements HashiCorp Vault, AWS Secrets Manager, and dynamic-credential architectures under a zero-trust model.
A secure password hashing skill for Argon2id, bcrypt, and scrypt with work-factor calibration and legacy hash migration.
Security Group Rules Expert designs least-privilege AWS, Azure, and GCP firewall rules with automated audit tooling.
A skill for configuring HTTP security headers - CSP, HSTS, clickjacking protection - across Nginx, Apache, Express, and Django.
A service mesh configuration skill for Istio and Linkerd covering traffic management, mTLS security, and canary rollout patterns.
A smart contract auditor skill for Solidity/EVM code: reentrancy, oracle manipulation, DeFi patterns, and a severity-rated audit report format.
A Splunk SPL skill for security detection, statistical analysis, subsearches, transaction queries, and query performance optimization.