Compliance & Audit Bundle

Audit-readiness checklists, control-narrative drafting, evidence-collection templates, and walkthrough-prep skills.

Included Skills (35)

  1. SOC 2 Assistant — Assists SaaS companies preparing for SOC 2 audits by mapping criteria, building matrices, and assessing audit readiness.
  2. Cloud DLP Implementer — Automate sensitive data discovery, classification, and protection across cloud environments to help security engineers maintain compliance with GDPR, HIPAA, and PCI DSS standards.
  3. ISMS Audit Assistant — This skill helps security professionals conduct ISO 27001 ISMS audits, assess controls, and prepare for certification.
  4. Identity Governance Architect — The Identity Governance Architect designs and implements identity governance programs on SailPoint, Saviynt, and Entra ID Governance, automating provisioning, role mining, and access request management to meet SOX, HIPAA, and GDPR requirements. By streamlining cross‑system processes and securing enterprise‑wide identity management, the architect reduces risk and boosts operational efficiency. Security teams, compliance officers, and IT operations benefit from a unified, automated approach that delivers measurable improvements in governance and compliance.
  5. GDPR DSAR Automator — Automates GDPR Data Subject Access Request workflows by streamlining PII discovery, identity verification, and regulatory reporting for privacy and compliance teams.
  6. Tamper-Evident Audit — Implement tamper-evident audit logs for compliance, helping developers build secure and compliant applications with immutable event tracking.
  7. GDPR Compliance Architect — This skill assists developers and compliance officers in implementing technical and organizational GDPR measures, including DPIAs, data subject rights, and secure cross-border data transfers.
  8. GDPR Compliance Automation — Automates GDPR compliance for web applications, assisting developers with PII auditing, consent management, and data request handling.
  9. SOC2 Compliance Assistant — Helps SaaS companies achieve SOC 2 Type II compliance by implementing controls and preparing for audits to meet enterprise requirements.
  10. PCI Compliance Architect — This tool assists organizations in implementing PCI DSS 4.0.1 security controls to protect cardholder data and prepare for formal compliance assessments.
  11. Cloud Compliance Orchestrator — This tool deploys AWS Security Hub to centralize security findings and automate compliance monitoring for cloud security engineers and compliance auditors.
  12. AWS Compliance Automator — This tool helps cloud security engineers implement continuous compliance monitoring and automated remediation for AWS resources across multi-account environments using AWS Config.
  13. Expense Reconciliation Auditor — This tool automates expense folder audits by reconciling receipts with bank statements, categorizing transactions, and flagging policy violations for financial controllers.
  14. CCPA Compliance Assistant — Helps businesses comply with CCPA/CPRA by implementing data privacy features and responding to consumer data requests.
  15. GDPR Compliance Auditor — This tool automates GDPR and DSGVO compliance by scanning codebases for privacy risks and managing documentation for data protection assessments and subject requests.
  16. PCI DSS Compliance — Achieve PCI DSS compliance by scoping, implementing controls, and selecting SAQ types for secure payment card data handling.
  17. Nitro Enclave Architect — This tool assists cloud security engineers in building isolated, attestation-verified confidential computing environments using AWS Nitro Enclaves to protect highly sensitive data.
  18. Cookie Consent Manager — Implements GDPR/ePrivacy-compliant cookie consent management, assisting developers in adding cookie banners and managing user consent for EU compliance.
  19. NIST CSF Assessment — This skill evaluates organizational cybersecurity maturity against NIST CSF 2.0 standards to identify security gaps and generate actionable improvement roadmaps for security professionals.
  20. Contract Risk Analyzer — Analyzes contracts to identify risks, missing clauses, and unfavorable terms, providing actionable recommendations for users.
  21. Personalization Governance Framework — This tool helps personalization teams enforce compliance, manage approval workflows, and maintain audit trails for high-impact content and model deployments.
  22. Compliance Review Orchestrator — This tool provides a standardized framework for campaign compliance intake and documentation to assist legal and medical teams in streamlining regulatory approval workflows.
  23. Cloud Security Auditor — This tool continuously monitors multi-cloud environments for misconfigurations and compliance violations, helping security teams maintain robust posture across AWS, Azure, and GCP.
  24. Breach Data Checker — Checks for email or domain exposure in known data breaches using the HaveIBeenPwned API and other sources.
  25. AWS Macie Orchestrator — This skill automates Amazon Macie deployment and configuration to help security engineers discover, classify, and protect sensitive data stored within Amazon S3 buckets.
  26. Medical Device Auditor — This tool pressure-tests medical device quality management systems using six targeted questions to ensure regulatory compliance before audits, submissions, or product launches.
  27. ISO 42001 Auditor — This tool pressure-tests AI Management Systems against ISO 42001 standards to help compliance officers prepare for certification audits and internal reviews.
  28. Azure PIM Configurator — This tool helps security administrators implement Zero Trust identity governance by configuring time-bound, eligible privileged role assignments within Microsoft Entra ID.
  29. Google Workspace Hardener — This tool helps security administrators harden Google Workspace environments by enforcing MFA, DLP policies, and secure OAuth configurations to mitigate common cyber threats.
  30. EU AI Act Compliance Assistant — This tool assists compliance teams in navigating EU AI Act regulations by classifying system risk tiers, determining conformity assessment routes, and tracking organizational obligations.
  31. Privileged Access Auditor — This tool systematically validates privileged account permissions to ensure compliance, enforce least privilege, and identify stale access for security and identity governance teams.
  32. Agent Action Notary — This tool generates tamper-evident, post-quantum-signed receipts for autonomous agent actions, helping developers ensure accountability and compliance with regulatory record-keeping requirements.
  33. Workspace Phishing Defender — This skill automates the configuration of advanced phishing and malware protection settings in Google Workspace to help administrators secure organizational email environments.
  34. NIST RMF Compliance — This skill guides federal system owners through the NIST RMF process to achieve and maintain an Authorization to Operate for cybersecurity compliance.
  35. Participant Operations Manager — This skill streamlines participant recruitment, scheduling, compliance, and incentive fulfillment to help researchers manage study logistics efficiently and securely.