BagelHole/DevOps-Security-Agent-Skills

DirSkills catalogs 25 skills from this repository, across 2 categories: AI Engineering, DevOps.

709 stars89 forksView on GitHub
🧠
1w ago

AI Pipeline Orchestration

AI Pipeline Orchestration builds reliable workflows for document ingestion, batch inference, model training, and RAG indexing. Use it to schedule recurring AI jobs and manage dependencies in production pipelines.
AI Engineering
70989
🚨
1w ago

AI SRE Incident Response

AI SRE Incident Response builds runbooks and alerting for LLM outages, quality regressions, safety incidents, and runaway cost events. Use it when AI services need SRE-style monitoring, rollback, and escalation procedures.
DevOps
70989
🪵
1w ago

AWS CloudTrail

AWS CloudTrail configures audit logging for AWS account activity, including organization trails and event selectors. Use it to investigate incidents, meet compliance needs, and alert on sensitive API calls.
DevOps
70989
🔐
1w ago

Access Review

Access Review conducts periodic access certifications and reviews across identity systems like AWS IAM, GitHub, and Okta. Use it to find stale accounts, unused permissions, and generate audit evidence for compliance reviews.
DevOps
70989
🧪
1w ago

Agent Evals

Agent Evals builds repeatable tests for AI agent behavior using golden datasets, tool-call checks, safety prompts, and judge-based scoring. Use it to validate prompt changes, catch regressions, and gate deployments on quality.
AI Engineering
70989
📈
1w ago

Agent Observability

Agent Observability instruments AI agents with logs, traces, metrics, token usage, latency, and cost telemetry. Use it to debug reliability issues, set SLOs, and monitor agent or LLM workloads.
AI Engineering
70989
📦
1w ago

Asset Inventory

Asset Inventory maintains an IT asset inventory and CMDB data for hardware, software, cloud resources, and related configuration. Use it when discovering assets, enforcing tags, or preparing compliance audits.
DevOps
70989
📝
1w ago

Audit Logging

Audit Logging implements centralized audit trails, log retention, and SIEM integration for infrastructure and applications. Use it when you need compliance logging, security monitoring, or forensic analysis.
DevOps
70989
🛡️
1w ago

Azure Monitor Audit

Azure Monitor Audit configures Azure Monitor, Activity Logs, and Log Analytics for centralized auditing. Use it to collect diagnostic data, enforce diagnostic settings, and investigate security or compliance events in Azure.
DevOps
70989
🛡️
1w ago

Business Continuity Planning

Business Continuity Planning helps develop business continuity plans, business impact analyses, communication procedures, and recovery testing. Use it when building organizational resilience or meeting continuity compliance requirements.
DevOps
70989
🛠️
1w ago

Change Management

Change Management implements structured production change controls, including classification, CAB reviews, change windows, and rollback planning. Use it when managing releases, emergency fixes, and compliance-related change processes.
DevOps
70989
🛟
1w ago

Disaster Recovery

Disaster Recovery implements disaster recovery strategies, including RTO/RPO planning, cross-region failover, and DR testing. Use it when designing business continuity runbooks and automated failover procedures.
DevOps
70989
🛡️
1w ago

FedRAMP Compliance

FedRAMP Compliance implements FedRAMP requirements for cloud services used by US federal agencies. Use it to map NIST 800-53 controls, maintain continuous monitoring, and prepare for 3PAO assessments or POA&M tracking.
DevOps
70989
📋
1w ago

GCP Audit Logs

GCP Audit Logs helps configure Cloud Audit Logs for compliance, security investigation, and operational monitoring. Use it to enable data access logging, route logs to BigQuery or storage, and query activity in GCP.
DevOps
70989
🛡️
1w ago

GDPR Compliance

GDPR Compliance implements GDPR data protection requirements for EU/EEA personal data. Use it for consent management, DSAR workflows, DPIAs, retention, and privacy by design.
DevOps
70989
🛡️
1w ago

HIPAA Compliance

HIPAA Compliance implements HIPAA Security, Privacy, and Breach Notification Rule checks for systems that handle ePHI. Use it to configure safeguards, BAAs, encryption, access controls, and incident response.
DevOps
70989
🛡️
1w ago

ISO 27001 Compliance

ISO 27001 Compliance helps implement an Information Security Management System aligned with ISO/IEC 27001:2022. Use it for scope definition, risk assessment, Annex A controls, and audit preparation.
DevOps
70989
🚨
1w ago

Incident Management

Incident Management implements severity levels, escalation paths, war room procedures, and post-incident reviews for production systems. Use it to coordinate outages, on-call response, and compliance-driven incident handling.
DevOps
70989
💾
1w ago

LLM Caching

LLM Caching implements exact-match, semantic, and provider-side prompt caching for LLM calls. Use it when repeated or similar prompts need lower API cost, faster responses, or higher throughput.
AI Engineering
70989
💸
1w ago

LLM Cost Optimization

LLM Cost Optimization reduces API and infrastructure spend with model right-sizing, caching, batching, prompt compression, quantization, and self-hosting. Use it when you need to track AI costs, set budgets, or route requests by cost.
AI Engineering
70989
🔒
1w ago

PCI DSS Compliance

PCI DSS Compliance helps implement PCI DSS v4.0 controls for payment card data in the cardholder data environment. Use it when scoping a CDE, choosing an SAQ, or preparing for PCI assessment and scanning.
DevOps
70989
🛡️
1w ago

Policy As Code

Policy As Code implements policy checks with OPA/Rego, Kyverno, and related tools to enforce compliance in CI/CD and infrastructure. Use it to block unsafe Terraform, Kubernetes, and cloud changes before deployment.
DevOps
70989
📘
1w ago

Runbook Creation

Runbook Creation helps document operational procedures, troubleshooting steps, and recovery actions for on-call engineers. Use it when turning tribal knowledge into runbooks or standard operating procedures.
DevOps
70989
🛡️
1w ago

SOC 2 Compliance

SOC 2 Compliance implements Trust Services Criteria controls, evidence collection, and continuous monitoring for Type I and Type II audits. Use it to map controls, automate auditor evidence, and track security, availability, and integrity requirements.
DevOps
70989
📋
1w ago

Vendor Management

Vendor Management implements a vendor risk management program for assessing third-party security, tracking contracts, and monitoring SLAs. Use it when onboarding vendors, running reassessments, or preparing SOC 2 and ISO 27001 evidence.
DevOps
70989