iso27001 skills

14 tagged iso27001, measured the same way as everything else here.

Browse within: compliance 14grc 9soc2 8audit 6gdpr 5

intuitem/ciso-assistant-community

Skill Claude CodeCodex

Guide users through a basic risk assessment workflow in CISO Assistant, from asset identification to scenario creation. Use when: (1) User wants to start a risk assessment from scratch (2) User mentions "risk assessment", "identify risks", "threat scenarios", or "risk register" (3) User asks about qualitative vs…

4.4k +14 today A 138 tokens

mapping-builder

02

intuitem/ciso-assistant-community

Skill Claude CodeCodex

Build a reviewed crosswalk (RequirementMappingSet YAML library + review xlsx/csv) between two CISO Assistant framework YAML files using Claude itself as the reasoning engine. Zero infrastructure — stdlib + pyyaml only, no embedders, no LM Studio, no Qdrant. Use when the user asks to map / crosswalk / generate a…

4.4k +14 today A 164 tokens

intuitem/ciso-assistant-community

Skill Claude CodeCodex

Enrich a CISO Assistant framework YAML by linking each assessable requirement to reference control URNs from the central doc-pol library (CISO Assistant Key Reference Controls). Produces a reviewable xlsx and patches the framework YAML in place. Use when the user asks to "add reference controls to framework X", "link…

4.4k +14 today A 102 tokens

fort

04

djadmin/fort

Skill Claude CodeCodex

Use when the user wants to check, understand, or harden the security of their Mac, or asks whether their laptop is secure and what to fix. Runs a full macOS security audit, explains each finding in plain language (what it is, why it matters, what changing it would affect), and applies only the fixes the user approves.…

78 1mo ago A 137 tokens original MIT

cybersorted

06

cyber-sorted/skills-pro

Skill Claude CodeCodex

Security and enterprise architecture advisory skill. Use this skill when the user needs help with cybersecurity strategy, threat modeling, risk assessment, compliance, security architecture, enterprise architecture, or governance. Trigger when the user mentions: security posture, threat model, STRIDE, PASTA, risk…

3 6mo ago A 417 tokens

iso-27001

07

grcwarlock/compliance-as-code

Skill Claude CodeCodex

Use when the user asks about ISO/IEC 27001:2022 from an engineering perspective — building an ISMS that runs on systems and code rather than spreadsheets, instrumenting Annex A controls, designing risk registers as data, and producing evidence pipelines that hold up to a certification audit. Engineer-voice, not…

2 4mo ago A 72 tokens original MIT

nist-800-53

08

grcwarlock/compliance-as-code

Skill Claude CodeCodex

Use when the user asks about NIST SP 800-53 Rev. 5 from an engineering perspective — selecting baselines, tailoring controls, modeling control inheritance from cloud providers and shared services, emitting OSCAL artifacts, or implementing controls in IaC and code rather than running them as a documentation exercise.…

2 4mo ago A 76 tokens original MIT

soc-2

09

grcwarlock/compliance-as-code

Skill Claude CodeCodex

Use when the user asks about SOC 2 from an engineering perspective — Trust Services Criteria (TSC) implementation, evidence-as-code, continuous monitoring patterns, instrumenting controls, or designing systems that produce audit-ready evidence by default. Engineer-voice, not auditor-voice.

2 4mo ago A 59 tokens original MIT