From cybersec-toolkit
Guides governance, risk, compliance, and privacy work including control mapping, audit readiness, and remediation planning for frameworks like SOC 2, ISO 27001, NIST CSF, CIS, GDPR.
How this skill is triggered — by the user, by Claude, or both
Slash command
/cybersec-toolkit:grc-compliance-privacy-programThe summary Claude sees in its skill listing — used to decide when to auto-load this skill
Use this skill when the task is about proving security, governing risk, mapping controls, privacy obligations, audit readiness, or legal/regulatory scoping.
Use this skill when the task is about proving security, governing risk, mapping controls, privacy obligations, audit readiness, or legal/regulatory scoping.
Use a table like:
| Area | Requirement | Current evidence | Gap | Risk | Owner | Next action |
|---|
For privacy work, include data inventory, lawful basis/processing purpose, retention, access, transfer, processor/subprocessor, DSAR, deletion, breach notification, and logging requirements.
npx claudepluginhub 26zl/cybersec-toolkit --plugin cybersec-toolkitMap security controls to compliance framework requirements (NIST, CIS, ISO 27001, PCI-DSS, HIPAA, GDPR, SOC 2).
Provides senior GRC analyst expertise across 15 frameworks including NIST 800-53, FedRAMP, FISMA, CMMC, SOC 2, ISO 27001. Supports control lookups, cross-mapping, document review, audit prep, compliance workflows.
Tracks compliance for SOC 2, ISO 27001, GDPR, HIPAA, PCI DSS. Manages controls, audit calendars, evidence, gap analyses, checklists.