SOC 2 Type II Bundle | Prompeteer.ai
Trust-service-criteria mapping, control descriptions, evidence-room organization, and audit-firm-prep skills for SOC 2 readiness.
Included Skills (50)
- Video Calibration Automator — This tool executes AutoMagicCalib on various video inputs and manages microservice deployment to assist engineers in streamlining video search and summarization workflows.
- VCN Gap Analyzer — This tool identifies weak classification samples for NVIDIA TAO VCN experiments to help engineers optimize decision thresholds and target data for augmentation.
- VCN Sample Router — This tool routes identified VCN gap samples into specific augmentation modules based on label eligibility to optimize the AOI SDA iteration process.
- Adversarial Decision Reviewer — This skill subjects non-trivial technical decisions to rigorous adversarial cross-examination, helping developers ensure correctness and mitigate risks in high-stakes coding environments.
- Production Observability Instrumentation — This skill helps developers integrate logging, metrics, and tracing into their code to ensure production systems remain fully transparent and easily diagnosable.
- Compliance Orchestration Engine — This meta-orchestrator helps compliance teams configure frameworks, map control overlaps, simulate audits, and consolidate evidence across multiple regulatory standards for streamlined certification readiness.
- Security Incident Responder — This skill classifies, triages, and manages declared security incidents, determining severity, escalation paths, and initiating forensic evidence collection for security teams.
- UEFI Firmware Auditor — This tool utilizes Intel CHIPSEC to assess platform firmware security, identify hardware vulnerabilities, and analyze low-level configurations for cybersecurity professionals and researchers.
- Campaign Attribution Analyst — This tool assists cybersecurity professionals in systematically evaluating evidence to determine threat actor responsibility using structured frameworks like the Diamond Model and ACH.
- Volatile Evidence Collector — This tool assists incident responders in systematically capturing volatile forensic data from compromised systems to preserve critical evidence before it is lost.
- SOC 2 Auditor — Automates SOC 2 Type II audit preparation, evidence collection, and continuous compliance monitoring to help security teams streamline their certification and remediation processes.
- ISMS Audit Assistant — This skill helps security professionals conduct ISO 27001 ISMS audits, assess controls, and prepare for certification.
- Network Traffic Forensics — This tool analyzes network traffic captures and flow data to help incident responders identify adversary activity like command-and-control, lateral movement, and data exfiltration.
- Splunk Security Analyst — This skill assists security professionals in investigating incidents by performing log correlation, anomaly detection, and complex SPL query generation within Splunk Enterprise Security.
- UEFI Bootkit Analyzer — This tool assists cybersecurity professionals by identifying and analyzing UEFI firmware persistence mechanisms, bootkit infections, and potential Secure Boot bypass vulnerabilities.
- Windows Threat Analyst — This skill helps SOC analysts and incident responders detect Windows-based threats by executing MITRE-mapped SPL queries against Splunk event logs.
- QRadar Correlation Assistant — This tool helps SOC analysts and detection engineers correlate security events and tune detection logic within IBM QRadar to identify multi-stage attacks.
- NTLM Relay Detector — This tool helps security analysts identify NTLM relay attacks by correlating Windows security events to detect suspicious authentication patterns and protocol downgrades.
- FIDO2 Authentication Architect — This skill assists developers in implementing secure FIDO2 and WebAuthn hardware authentication flows to enable robust, phishing-resistant passwordless login systems for users.
- LLM Security Guardrails — This tool secures LLM applications by implementing input and output validation pipelines to prevent prompt injection, data leakage, and toxic content generation.
- Network Segmentation Architect — Design and implement secure network segmentation using firewall zones and microsegmentation to restrict lateral movement and enforce least-privilege access for security engineers.
- STIX Threat Intelligence — This tool enables cybersecurity professionals to create, validate, and share standardized STIX 2.1 threat intelligence objects using the Python stix2 library.
- Splunk SOAR Automation — This skill helps SOC teams automate alert triage, incident response, and security tool orchestration to reduce manual workload and improve response consistency.
- Oil Gas Cybersecurity Assessment — This skill assists security professionals in conducting comprehensive cybersecurity assessments for oil and gas industrial control systems and critical infrastructure facilities.
- OT Network Security Assessor — This skill assists cybersecurity professionals in conducting comprehensive security assessments of industrial control systems and OT network architectures to identify critical vulnerabilities.
- Power Grid Cybersecurity Assessment — This skill assists security professionals in conducting comprehensive cybersecurity assessments of power grid infrastructure, ensuring NERC CIP compliance and robust protection for critical energy systems.
- AI Security Assessor — Assess AI/ML systems for vulnerabilities like prompt injection, model inversion, and data poisoning, aiding security engineers and AI developers.
- S7comm Security Analyzer — This tool helps cybersecurity professionals identify vulnerabilities and potential attack vectors within Siemens S7comm and S7CommPlus industrial control system protocols.
- Elastic Threat Hunter — This skill enables SOC analysts to perform proactive threat hunting in Elastic SIEM using KQL and EQL to identify sophisticated threats evading automated detection.
- Splunk Alert Triage — This skill assists SOC analysts in efficiently classifying, investigating, and documenting security alerts within Splunk Enterprise Security to streamline incident response workflows.
- Security Incident Triage — This tool helps SOC analysts classify and prioritize security incidents by applying structured IR playbooks to streamline response team assignment and procedures.
- Security Incident Triage — This tool assists security analysts by classifying and prioritizing active security incidents using industry-standard frameworks to streamline initial response and escalation.
- Robotics Security Hardening — This skill hardens robotic systems by implementing security best practices for ROS2, DDS, network segmentation, and secrets management.
- Subdomain Discovery Tool — Subfinder discovers subdomains for a target domain using passive enumeration, aiding security professionals and developers in attack surface mapping.
- UEFI Bootkit Hunter — This tool helps security analysts detect malicious bootkits and unauthorized binaries within the EFI System Partition to ensure firmware integrity and persistence.
- Breach Containment Specialist — Executes rapid containment strategies to halt active adversary operations and prevent lateral movement for cybersecurity incident response teams during critical breaches.
- Zero Trust DNS — This skill helps security engineers implement NextDNS to enforce encrypted resolution, threat intelligence blocking, and granular policy control across organizational network endpoints.
- Vulnerability Prioritization Assistant — This tool helps security professionals prioritize CVE remediation by integrating CISA KEV data with EPSS and CVSS scores for risk-based decision making.
- Feature Flag Architect — This skill helps software teams manage feature flags throughout their lifecycle, from creation and rollout to auditing and removal.
- Feature Flag Architect — This skill helps software teams manage feature flags throughout their lifecycle, from creation and rollout to auditing and eventual removal.
- ML Integrity Auditor — This tool helps security engineers identify poisoned training data and hidden backdoors to ensure the integrity of machine learning supply chains.
- Npm Malware Analyzer — This tool helps security engineers identify malicious npm packages by detecting dangerous install-script behaviors, exfiltration attempts, and potential supply-chain threats.
- Typosquatting Detection Tool — This tool identifies malicious or misspelled software packages across major registries to help developers and security teams prevent supply chain attacks.
- Sliver C2 Operator — This tool enables red teamers to deploy Sliver C2 infrastructure, manage cross-platform implants, and execute post-exploitation tasks for authorized adversary emulation engagements.
- LLM Red Teaming — Automate multi-turn adversarial attack chains against conversational AI models using Microsoft PyRIT to identify security vulnerabilities and improve system robustness.
- Agent Tool Security — This skill implements least-privilege allowlisting and human-in-the-loop controls to protect autonomous AI agents from unauthorized tool invocation and privilege escalation.
- Jetson Memory Auditor — This tool provides precise DRAM and NvMap usage snapshots to help developers verify memory reclamation and troubleshoot resource management issues on Jetson devices.
- Threat Intelligence Navigator — This tool helps cybersecurity analysts visualize adversary TTPs and identify detection gaps by generating layered heatmaps using the MITRE ATT&CK Navigator framework.
- Phishing Certificate Monitor — This tool monitors Certificate Transparency logs to help security teams detect phishing domains, lookalike certificates, and unauthorized issuance targeting their organization.
- Cobalt Strike Analyzer — Extract and analyze Cobalt Strike beacon configurations from files and memory to help incident responders identify C2 infrastructure and attacker tradecraft.