Collection85 items

bagelhole/devops-security-agent-skills

View on GitHub
2stars

🎯Skills85

🎯systemd-services🎯Skill

Skill

systemd-services
🎯circleci🎯Skill

Skill

circleci
🎯gcp-gke🎯Skill

Automates Google Kubernetes Engine (GKE) cluster provisioning, configuration, and security hardening using best practices and infrastructure-as-code principles.

gcp-gke
🎯business-continuity🎯Skill

Generates comprehensive business continuity and disaster recovery plans by analyzing infrastructure configurations, identifying potential risks, and recommending resilience strategies across cloud ...

business-continuity
🎯sast-scanning🎯Skill

Performs automated static application security testing (SAST) on source code to identify potential security vulnerabilities and coding risks before deployment.

sast-scanning
🎯database-backups🎯Skill

Automates database backup strategies, generating secure, consistent backup configurations and scripts across multiple database systems and cloud platforms.

database-backups
🎯cis-benchmarks🎯Skill

Validates and recommends security configurations for infrastructure and systems against Center for Internet Security (CIS) benchmark standards and best practices.

cis-benchmarks
🎯ssl-tls-management🎯Skill

Manages SSL/TLS certificate lifecycle, including generation, validation, rotation, and secure configuration across infrastructure and cloud environments.

ssl-tls-management
🎯docker-management🎯Skill

Skill

docker-management
🎯semantic-versioning🎯Skill

Skill

semantic-versioning
🎯podman🎯Skill

Skill

podman
🎯azure-vms🎯Skill

Skill

azure-vms
🎯aws-vpc🎯Skill

Skill

aws-vpc
🎯github-actions🎯Skill

Skill

github-actions
🎯gdpr-compliance🎯Skill

Skill

gdpr-compliance
🎯aws-ec2🎯Skill

Skill

aws-ec2
🎯new-relic🎯Skill

Configures and and retrieves performance metrics and and monitoring configurations for New New Rinfrastructure infrastructure and application performance tracking.

new-relic
🎯feature-flags🎯Skill

Manages and analyzes feature flag configurations across different environments, helping teams safely roll out and control software features dynamically.

feature-flags
🎯terraform-gcp🎯Skill

Generates and manages Google Cloud Platform infrastructure configurations using Terraform, automating cloud resource provisioning and deployment.

terraform-gcp
🎯reverse-proxy🎯Skill

Configures and sets up secure reverse proxy configurations for routing and protecting web traffic across different infrastructure environments.

reverse-proxy
🎯kubernetes-hardening🎯Skill

Skill

kubernetes-hardening
🎯gcp-cloud-functions🎯Skill

Skill

gcp-cloud-functions
🎯azure-functions🎯Skill

Skill

azure-functions
🎯terraform-azure🎯Skill

Generates and manages Azure cloud infrastructure configurations using Terraform, automating resource provisioning and deployment with best practices and security considerations.

terraform-azure
🎯aws-iam🎯Skill

Helps DevOps professionals quickly audit, analyze, and generate secure AWS IAM policies, roles, and access configurations with best practice recommendations.

aws-iam
🎯loki-logging🎯Skill

Configures and manages log aggregation using Loki, enabling centralized logging and analysis for distributed systems and Kubernetes environments.

loki-logging
🎯argocd-gitops🎯Skill

Automates GitOps deployment workflows for Kubernetes clusters using ArgoCD, enabling declarative and version-controlled infrastructure management.

argocd-gitops
🎯fedramp-compliance🎯Skill

Skill

fedramp-compliance
🎯aws-rds🎯Skill

Skill

aws-rds
🎯mysql🎯Skill

Skill

mysql
🎯gcp-audit-logs🎯Skill

Skill

gcp-audit-logs
🎯arm-templates🎯Skill

Generates and validates Azure Resource Manager (ARM) templates for consistent, repeatable cloud infrastructure deployments in Azure environments.

arm-templates
🎯prometheus-grafana🎯Skill

Configures and sets up monitoring dashboards in Grafana using Prometheus metrics for comprehensive infrastructure and application performance tracking.

prometheus-grafana
🎯linux-administration🎯Skill

Provides expert Linux system administration guidance, including server hardening, configuration management, security best practices, and troubleshooting commands for DevOps professionals.

linux-administration
🎯helm-charts🎯Skill

Generates, validates, and manages Helm chart templates and configurations for Kubernetes deployments, ensuring consistent and reproducible infrastructure-as-code.

helm-charts
🎯user-management🎯Skill

Manages user account lifecycle, access controls, and permissions across cloud platforms and infrastructure, automating user onboarding, offboarding, and role assignments.

user-management
🎯cloudformation🎯Skill

Skill

cloudformation
🎯block-storage🎯Skill

Manages cloud block storage provisioning, configuration, and security best practices across multiple cloud providers like AWS, Azure, and GCP.

block-storage
🎯elk-stack🎯Skill

Configures and deploys an ELK (Elasticsearch, Logstash, Kibana) stack for centralized log management, monitoring, and analysis of infrastructure and application logs.

elk-stack
🎯kubernetes-ops🎯Skill

Automates Kubernetes cluster management, security hardening, and operational tasks like deployment configuration, resource scaling, and security context setup.

kubernetes-ops
🎯vpn-setup🎯Skill

Automates secure VPN configuration and deployment across cloud environments, generating network-specific configurations and implementing best-practice security settings.

vpn-setup
🎯azure-networking🎯Skill

Generates and configures Azure network security groups, virtual networks, subnets, and firewall rules to establish secure and compliant network architectures in Azure cloud environments.

azure-networking
🎯jenkins🎯Skill

Automates Jenkins pipeline configuration, security hardening, and best practice implementation for continuous integration and deployment workflows.

jenkins
🎯incident-management🎯Skill

Automates incident response workflows by providing step-by-step guidance, tracking resolution progress, and generating post-mortem reports for DevOps and security teams.

incident-management
🎯dependency-scanning🎯Skill

Scans project dependencies for known security vulnerabilities, identifying potential risks in software libraries and packages across different programming languages and ecosystems.

dependency-scanning
🎯disaster-recovery🎯Skill

Generates comprehensive disaster recovery plans and scripts for cloud infrastructure, automating backup, restoration, and failover strategies across multi-cloud environments.

disaster-recovery
🎯change-management🎯Skill

Automates tracking, reviewing, and approving infrastructure and configuration changes across DevOps environments to ensure compliance and minimize risk.

change-management
🎯alerting-oncall🎯Skill

Automates on-call alert routing, escalation, and notification workflows for DevOps and security incidents across multiple communication channels and incident management platforms.

alerting-oncall
🎯linux-hardening🎯Skill

Automates Linux server security hardening by generating and applying recommended sysctl configurations, firewall rules, and security best practices.

linux-hardening
🎯hashicorp-vault🎯Skill

Automates secure retrieval, management, and rotation of secrets and credentials from HashiCorp Vault across infrastructure and application deployments.

hashicorp-vault
🎯aws-secrets-manager🎯Skill

Retrieves, manages, and securely rotates AWS Secrets Manager credentials and configuration secrets for infrastructure and application deployments.

aws-secrets-manager
🎯firewall-config🎯Skill

Generates and validates firewall configuration rules for cloud and on-premises environments, ensuring network security and compliance across different infrastructure platforms.

firewall-config
🎯asset-inventory🎯Skill

Discovers, catalogs, and maps infrastructure assets across cloud providers and on-premises environments, generating a comprehensive inventory of resources and configurations.

asset-inventory
🎯dns-management🎯Skill

Manages DNS configurations, records, and zones across cloud providers, enabling automated DNS setup, modification, and security hardening for infrastructure.

dns-management
🎯azure-devops🎯Skill

Automates Azure DevOps pipeline configuration, security assessments, and infrastructure management tasks using AI-driven recommendations and best practices.

azure-devops
🎯backup-recovery🎯Skill

Automates comprehensive backup and disaster recovery strategies for cloud and on-premises infrastructure, generating resilient recovery plans and executing systematic data protection workflows.

backup-recovery
🎯azure-monitor-audit🎯Skill

Retrieves and analyzes Azure Monitor logs and metrics to perform comprehensive security and compliance audits across Azure cloud resources.

azure-monitor-audit
🎯vulnerability-scanning🎯Skill

Scans infrastructure, containers, and cloud configurations for security vulnerabilities, misconfigurations, and potential compliance risks across multiple platforms and technologies.

vulnerability-scanning
🎯windows-hardening🎯Skill

Automates Windows server security configuration by applying recommended hardening settings, disabling unnecessary services, and implementing best-practice security policies.

windows-hardening
🎯gcp-networking🎯Skill

Configures and secures Google Cloud Platform network settings, firewall rules, VPC networks, and subnets with best practices and automated provisioning.

gcp-networking
🎯gcp-cloud-sql🎯Skill

Automates secure configuration, monitoring, and hardening of Google Cloud SQL database instances with best practices for access control, encryption, and network security.

gcp-cloud-sql
🎯waf-setup🎯Skill

Configures and deploys a Web Application Firewall (WAF) with recommended security settings across cloud platforms and infrastructure environments.

waf-setup
🎯runbook-creation🎯Skill

Generates comprehensive, structured runbooks for DevOps and security incident response workflows, automating documentation of step-by-step procedures and best practices.

runbook-creation
🎯audit-logging🎯Skill

Generates comprehensive security and compliance audit logs for infrastructure, tracking critical events, access attempts, and configuration changes across cloud and on-premises environments.

audit-logging
🎯performance-tuning🎯Skill

Analyzes and recommends optimizations for system resources, compute performance, and infrastructure configurations to improve application and infrastructure efficiency.

performance-tuning
🎯aws-s3🎯Skill

Automates AWS S3 bucket security assessments, scanning for misconfigurations, access policies, and potential data exposure risks.

aws-s3
🎯pci-dss-compliance🎯Skill

Automates PCI DSS compliance checks and generates remediation recommendations for cloud infrastructure and application configurations.

pci-dss-compliance
🎯gitlab-ci🎯Skill

Generates and validates GitLab CI/CD pipeline configurations, offering intelligent recommendations for optimizing and securing continuous integration workflows.

gitlab-ci
🎯terraform-aws🎯Skill

Generates and manages AWS infrastructure configurations using Terraform, automating cloud resource provisioning and ensuring consistent, repeatable cloud deployments.

terraform-aws
🎯azure-sql🎯Skill

Helps configure, secure, and manage Azure SQL database instances with best practices, connection settings, and security hardening recommendations.

azure-sql
🎯vendor-management🎯Skill

Helps DevOps teams systematically assess, track, and manage third-party vendor security risks, compliance requirements, and technology integrations.

vendor-management
🎯kustomize🎯Skill

Helps generate, customize, and manage Kubernetes resource configurations by applying overlays and patches to base Kustomize manifests efficiently.

kustomize
🎯aws-lambda🎯Skill

Generates, configures, and secures AWS Lambda function infrastructure with best practices, including IAM roles, event sources, and deployment strategies.

aws-lambda
🎯sops-encryption🎯Skill

Encrypts and decrypts sensitive configuration files using Mozilla SOPS, enabling secure management of secrets across different cloud environments and infrastructure-as-code workflows.

sops-encryption
🎯access-review🎯Skill

Reviews and analyzes access permissions across cloud infrastructure, identifying potential security misconfigurations and overly permissive roles or policies.

access-review
🎯iso27001-compliance🎯Skill

Helps DevOps teams automatically assess and validate infrastructure configurations against ISO 27001 information security management system (ISMS) compliance requirements.

iso27001-compliance
🎯security-automation🎯Skill

Automates security configuration, vulnerability scanning, and compliance checks across cloud infrastructure and container environments.

security-automation
🎯ssh-configuration🎯Skill

Configures and hardens SSH server settings to improve security, implementing best practices like key-based authentication, disabling root login, and setting strict access controls.

ssh-configuration
🎯container-scanning🎯Skill

Scans container images for security vulnerabilities, misconfigurations, and potential risks using industry-standard scanning tools and best practices.

container-scanning
🎯container-hardening🎯Skill

Generates comprehensive security configurations and best practices for hardening Docker containers, focusing on reducing attack surfaces and implementing defense-in-depth strategies.

container-hardening
🎯hipaa-compliance🎯Skill

Analyzes cloud infrastructure configurations and code repositories to identify potential HIPAA compliance violations and recommend remediation steps.

hipaa-compliance
🎯windows-server🎯Skill

Automates Windows Server security hardening, configuration management, and compliance checks using predefined best practices and expert-curated scripts.

windows-server
🎯nfs-storage🎯Skill

Configures and manages Network File System (NFS) storage resources, providing automated setup and security best practices for distributed file storage in cloud and on-premises environments.

nfs-storage
🎯aws-ecs-fargate🎯Skill

Automates provisioning, configuration, and security hardening of AWS ECS Fargate container deployments with best practices and infrastructure-as-code templates.

aws-ecs-fargate
🎯postgresql🎯Skill

Automates PostgreSQL database security hardening, configuration management, and best practices implementation for DevOps and cloud infrastructure.

postgresql