Complete AI TrainingYourJobSkills for your job

Jobs / Security

AI skills for Security

Cybersecurity, audits, pentesting and hardening. This hub is built from the same matcher you get with your own title — refine it with your exact role.

Essentials

every knowledge worker

brainstorming

Use before creative or constructive work (features, architecture, behavior). Transforms vague ideas into validated designs through disciplined reasoning and collaboration.

essentialnewuncategorized

concise-planning

Use when a user asks for a plan for a coding task, to generate a clear, actionable, and atomic checklist.

docx-official

A user may ask you to create, edit, or analyze the contents of a .docx file. A .docx file is essentially a ZIP archive containing XML files and other resources that you can read or edit. You have different tools and workflows available for different tasks.

pptx-official

A user may ask you to create, edit, or analyze the contents of a .pptx file. A .pptx file is essentially a ZIP archive containing XML files and other resources that you can read or edit. You have different tools and workflows available for different tasks.

xlsx-official

Unless otherwise stated by the user or existing template

pdf-official

This guide covers essential PDF processing operations using Python libraries and command-line tools. For advanced features, JavaScript libraries, and detailed examples, see reference.md. If you need to fill out a PDF form, read forms.md and follow its instructions.

professional-proofreader

Use when a user asks to "proofread", "review and correct", "fix grammar", "improve readability while keeping my voice", and to proofread a document file and save an updated version.

prompt-engineering

Expert guide on prompt engineering patterns, best practices, and optimization techniques. Use when user wants to improve prompts, learn prompting strategies, or debug agent behavior.

deep-research

Run autonomous research tasks that plan, search, read, and synthesize information into comprehensive reports.

avoid-ai-writing

Audit and rewrite content to remove 21 categories of AI writing patterns with a 43-entry replacement table

Core

strongest fit for this role

security-auditor

Expert security auditor specializing in DevSecOps, comprehensive cybersecurity, and compliance frameworks.

Security: security · tags: security, compliance · bundle: security-engineer · matches: cybersecurity, security

security-and-hardening

Hardens code against vulnerabilities. Use when handling user input, authentication, data storage, or external integrations. Use when building any feature that accepts untrusted data, manages user sessions, or interacts with third-party services.

Security: security · tags: security, hardening · bundle: aas-secure-app-builder · matches: hardening, security

007

Security audit, hardening, threat modeling (STRIDE/PASTA), Red/Blue Team, OWASP checks, code review, incident response, and infrastructure security for any project.

Security: security · tags: security, owasp, pentest · matches: hardening, security

security-scanning-security-hardening

Coordinate multi-layer security scanning and hardening across application, infrastructure, and compliance controls.

Security: security · tags: security, hardening, compliance · matches: hardening, security

dependency-management-deps-audit

You are a dependency security expert specializing in vulnerability scanning, license compliance, and supply chain security. Analyze project dependencies for known vulnerabilities, licensing issues, outdated packages, and provide actionable remediation strategies.

Security: security · tags: security, audit, vulnerability · bundle: security-developer · matches: security

container-security-hardening

Harden Docker/container images and runtime deployments with secure base images, non-root users, CVE scanning, SBOM/signing, seccomp/AppArmor, and Kubernetes pod security controls. Use for Dockerfile security reviews, container CVEs, image scanning, distroless images, or production hardening.

Security: security · tags: security, hardening · matches: hardening, security

security-compliance-compliance-check

You are a compliance expert specializing in regulatory requirements for software systems including GDPR, HIPAA, SOC2, PCI-DSS, and other industry standards. Perform comprehensive compliance audits and provide implementation guidance for achieving and maintaining compliance.

Security: security · tags: security, compliance · matches: audits, security

vulnerability-scanner

Advanced vulnerability analysis principles. OWASP 2025, Supply Chain Security, attack surface mapping, risk prioritization.

Security: security · tags: security, owasp, vulnerability · bundle: security-engineer · matches: security

Recommended

worth having

aws-iam-best-practices

IAM policy review, hardening, and least privilege implementation

Security: security · tags: security · matches: hardening, security

pci-compliance

Master PCI DSS (Payment Card Industry Data Security Standard) compliance for secure payment processing and handling of cardholder data.

Security: security · tags: security, compliance · bundle: security-developer · matches: security

burp-suite-testing

Execute comprehensive web application security testing using Burp Suite's integrated toolset, including HTTP traffic interception and modification, request analysis and replay, automated vulnerability scanning, and manual testing workflows.

Security: security · tags: security · bundle: security-engineer · matches: security

frontend-security-coder

Expert in secure frontend coding practices specializing in XSS prevention, output sanitization, and client-side security patterns.

Security: security · tags: security · bundle: security-developer · matches: security

linux-privilege-escalation

Execute systematic privilege escalation assessments on Linux systems to identify and exploit misconfigurations, vulnerable services, and security weaknesses that allow elevation from low-privilege user access to root-level control.

Security: security · tags: security · bundle: security-engineer · matches: security

sast-configuration

Static Application Security Testing (SAST) tool setup, configuration, and custom rule creation for comprehensive security scanning across multiple programming languages.

Security: security · tags: security · bundle: aas-security-engineer · matches: security

threat-modeling-expert

Expert in threat modeling methodologies, security architecture review, and risk assessment. Masters STRIDE, PASTA, attack trees, and security requirement extraction. Use PROACTIVELY for security architecture reviews, threat identification, or building secure-by-design systems.

Security: security · tags: security · bundle: security-engineer · matches: security

aws-security-audit

Comprehensive AWS security posture assessment using AWS CLI and security best practices

Security: security · tags: security, audit, compliance · matches: security

laravel-security-audit

Security auditor for Laravel applications. Analyzes code for vulnerabilities, misconfigurations, and insecure practices using OWASP standards and Laravel security best practices.

Security: security · tags: security, owasp, audit · matches: security

scanning-tools

Master essential security scanning tools for network discovery, vulnerability assessment, web application testing, wireless security, and compliance validation. This skill covers tool selection, configuration, and practical usage across different scanning categories.

Security: security · tags: security, vulnerability, compliance · matches: security

auth-implementation-patterns

Implement or review authentication and authorization with explicit token, session and resource-access boundaries.

Security: security · bundle: security-developer · matches: security

ethical-hacking-methodology

Master the complete penetration testing lifecycle from reconnaissance through reporting. This skill covers the five stages of ethical hacking methodology, essential tools, attack techniques, and professional reporting for authorized security assessments.

Security: security · bundle: security-engineer · matches: security

Explore

adjacent

secrets-management

Secure secrets management practices for CI/CD pipelines using Vault, AWS Secrets Manager, and other tools.

Security: security · bundle: aas-secure-app-builder · matches: security

top-web-vulnerabilities

Provide a comprehensive, structured reference for the 100 most critical web application vulnerabilities organized by category. This skill enables systematic vulnerability identification, impact assessment, and remediation guidance across the full spectrum of web security threats.

Security: security · bundle: security-engineer · matches: security

audit-skills

Expert security auditor for AI Skills and Bundles. Performs non-intrusive static analysis to identify malicious patterns, data leaks, system stability risks, and obfuscated payloads across Windows, macOS, Linux/Unix, and Mobile (Android/iOS).

Security: security · tags: security, audit · matches: security

aws-compliance-checker

Automated compliance checking against CIS, PCI-DSS, HIPAA, and SOC 2 benchmarks

Security: security · tags: audit, compliance · matches: security

cyber-audit

Run read-only exposure checks for security advisories and write a structured local audit report.

Security: security · tags: security, audit · matches: security

fsi-compliance-checker

Maps code, architecture, and infrastructure changes to specific control IDs in PCI-DSS v4.0 and MAS TRM (Singapore financial regulator), producing an audit-traceable findings report with per-control remediation.

Security: security · tags: audit, compliance · matches: security

production-audit

Audit a shipped repo for production-readiness gaps across RLS, webhooks, secrets, grants, Stripe idempotency, mobile UX, and deployment health.

Security: security · tags: security, audit · matches: security

red-team-tools

Implement proven methodologies and tool workflows from top security researchers for effective reconnaissance, vulnerability discovery, and bug bounty hunting. Automate common tasks while maintaining thorough coverage of attack surfaces.

Security: security · tags: security, vulnerability · matches: security

skill-audit

Pre-install security scanner for AI agent skills. 7.5% of 14,706 skills are malicious. Audit before you trust.

Security: security · tags: security, audit · matches: security

skill-security-audit

Audit an Agent Skill, MCP server, connector, or desktop extension before installation by tracing code, dependencies, permissions, credentials, data flow, and irreversible actions.

Security: security · tags: security, audit · matches: security

Security on Complete AI

AI news for securityAI toolsCoursesLearning pathsCertifications