From fedramp-20x
Guides FedRAMP 20X modernization with KSIs across 8 categories, continuous monitoring automation, machine-readable policies, and automated authorization. Syncs official docs.
How this skill is triggered — by the user, by Claude, or both
Slash command
/fedramp-20x:fedramp-20x-expertThis skill is limited to the following tools:
The summary Claude sees in its skill listing — used to decide when to auto-load this skill
Deep expertise in FedRAMP 20X modernization initiative.
Deep expertise in FedRAMP 20X modernization initiative.
| Code | Category | Focus Area |
|---|---|---|
| AFR | Access and Flow Restriction | Network controls, segmentation |
| CED | Configuration and Event Data | Logging, SIEM, monitoring |
| CMT | Configuration Management | Asset tracking, baselines |
| CNA | Cloud Native Architecture | Containers, Kubernetes, serverless |
| IAM | Identity and Access Management | AuthN, AuthZ, MFA |
| INR | Incident Notification | Response, communication |
| MLA | Malware Analysis | Endpoint, threat detection |
| PIY | Physical Infrastructure | Data center, physical security |
Traditional (Rev 5) → Modern (20X)
Syncs from official FedRAMP/docs repository:
npx claudepluginhub grcengclub/claude-grc-engineering --plugin fedramp-20xGuides FedRAMP certification and compliance including ATO, NIST SP 800-53 controls, docs (SSP, SAR, POA&M), gap assessments, cloud architecture, and continuous monitoring.
Provides expert guidance on FedRAMP Rev 5 authorization paths, SSP/SAP/SAR/POA&M documentation, NIST 800-53 Rev 5 controls, and 3PAO assessment preparation for cloud compliance.
Provides senior GRC analyst expertise across 15 frameworks including NIST 800-53, FedRAMP, FISMA, CMMC, SOC 2, ISO 27001. Supports control lookups, cross-mapping, document review, audit prep, compliance workflows.