BagelHole/DevOps-Security-Agent-Skills
DirSkills catalogs 25 skills from this repository, across 2 categories: AI Engineering, DevOps.
🧠
1w ago
AI Pipeline Orchestration
AI Pipeline Orchestration builds reliable workflows for document ingestion, batch inference, model training, and RAG indexing. Use it to schedule recurring AI jobs and manage dependencies in production pipelines.
AI Engineering
70989
🚨
1w ago
AI SRE Incident Response
AI SRE Incident Response builds runbooks and alerting for LLM outages, quality regressions, safety incidents, and runaway cost events. Use it when AI services need SRE-style monitoring, rollback, and escalation procedures.
DevOps
70989
🪵
1w ago
AWS CloudTrail
AWS CloudTrail configures audit logging for AWS account activity, including organization trails and event selectors. Use it to investigate incidents, meet compliance needs, and alert on sensitive API calls.
DevOps
70989
🔐
1w ago
Access Review
Access Review conducts periodic access certifications and reviews across identity systems like AWS IAM, GitHub, and Okta. Use it to find stale accounts, unused permissions, and generate audit evidence for compliance reviews.
DevOps
70989
🧪
1w ago
Agent Evals
Agent Evals builds repeatable tests for AI agent behavior using golden datasets, tool-call checks, safety prompts, and judge-based scoring. Use it to validate prompt changes, catch regressions, and gate deployments on quality.
AI Engineering
70989
📈
1w ago
Agent Observability
Agent Observability instruments AI agents with logs, traces, metrics, token usage, latency, and cost telemetry. Use it to debug reliability issues, set SLOs, and monitor agent or LLM workloads.
AI Engineering
70989
📦
1w ago
Asset Inventory
Asset Inventory maintains an IT asset inventory and CMDB data for hardware, software, cloud resources, and related configuration. Use it when discovering assets, enforcing tags, or preparing compliance audits.
DevOps
70989
📝
1w ago
Audit Logging
Audit Logging implements centralized audit trails, log retention, and SIEM integration for infrastructure and applications. Use it when you need compliance logging, security monitoring, or forensic analysis.
DevOps
70989
🛡️
1w ago
Azure Monitor Audit
Azure Monitor Audit configures Azure Monitor, Activity Logs, and Log Analytics for centralized auditing. Use it to collect diagnostic data, enforce diagnostic settings, and investigate security or compliance events in Azure.
DevOps
70989
🛡️
1w ago
Business Continuity Planning
Business Continuity Planning helps develop business continuity plans, business impact analyses, communication procedures, and recovery testing. Use it when building organizational resilience or meeting continuity compliance requirements.
DevOps
70989
🛠️
1w ago
Change Management
Change Management implements structured production change controls, including classification, CAB reviews, change windows, and rollback planning. Use it when managing releases, emergency fixes, and compliance-related change processes.
DevOps
70989
🛟
1w ago
Disaster Recovery
Disaster Recovery implements disaster recovery strategies, including RTO/RPO planning, cross-region failover, and DR testing. Use it when designing business continuity runbooks and automated failover procedures.
DevOps
70989
🛡️
1w ago
FedRAMP Compliance
FedRAMP Compliance implements FedRAMP requirements for cloud services used by US federal agencies. Use it to map NIST 800-53 controls, maintain continuous monitoring, and prepare for 3PAO assessments or POA&M tracking.
DevOps
70989
📋
1w ago
GCP Audit Logs
GCP Audit Logs helps configure Cloud Audit Logs for compliance, security investigation, and operational monitoring. Use it to enable data access logging, route logs to BigQuery or storage, and query activity in GCP.
DevOps
70989
🛡️
1w ago
GDPR Compliance
GDPR Compliance implements GDPR data protection requirements for EU/EEA personal data. Use it for consent management, DSAR workflows, DPIAs, retention, and privacy by design.
DevOps
70989
🛡️
1w ago
HIPAA Compliance
HIPAA Compliance implements HIPAA Security, Privacy, and Breach Notification Rule checks for systems that handle ePHI. Use it to configure safeguards, BAAs, encryption, access controls, and incident response.
DevOps
70989
🛡️
1w ago
ISO 27001 Compliance
ISO 27001 Compliance helps implement an Information Security Management System aligned with ISO/IEC 27001:2022. Use it for scope definition, risk assessment, Annex A controls, and audit preparation.
DevOps
70989
🚨
1w ago
Incident Management
Incident Management implements severity levels, escalation paths, war room procedures, and post-incident reviews for production systems. Use it to coordinate outages, on-call response, and compliance-driven incident handling.
DevOps
70989
💾
1w ago
LLM Caching
LLM Caching implements exact-match, semantic, and provider-side prompt caching for LLM calls. Use it when repeated or similar prompts need lower API cost, faster responses, or higher throughput.
AI Engineering
70989
💸
1w ago
LLM Cost Optimization
LLM Cost Optimization reduces API and infrastructure spend with model right-sizing, caching, batching, prompt compression, quantization, and self-hosting. Use it when you need to track AI costs, set budgets, or route requests by cost.
AI Engineering
70989
🔒
1w ago
PCI DSS Compliance
PCI DSS Compliance helps implement PCI DSS v4.0 controls for payment card data in the cardholder data environment. Use it when scoping a CDE, choosing an SAQ, or preparing for PCI assessment and scanning.
DevOps
70989
🛡️
1w ago
Policy As Code
Policy As Code implements policy checks with OPA/Rego, Kyverno, and related tools to enforce compliance in CI/CD and infrastructure. Use it to block unsafe Terraform, Kubernetes, and cloud changes before deployment.
DevOps
70989
📘
1w ago
Runbook Creation
Runbook Creation helps document operational procedures, troubleshooting steps, and recovery actions for on-call engineers. Use it when turning tribal knowledge into runbooks or standard operating procedures.
DevOps
70989
🛡️
1w ago
SOC 2 Compliance
SOC 2 Compliance implements Trust Services Criteria controls, evidence collection, and continuous monitoring for Type I and Type II audits. Use it to map controls, automate auditor evidence, and track security, availability, and integrity requirements.
DevOps
70989
📋
1w ago
Vendor Management
Vendor Management implements a vendor risk management program for assessing third-party security, tracking contracts, and monitoring SLAs. Use it when onboarding vendors, running reassessments, or preparing SOC 2 and ISO 27001 evidence.
DevOps
70989