Audits service accounts across Active Directory, AWS, Azure, GCP, databases, and apps to identify orphaned, over-privileged, and non-compliant accounts with missing owners or poor credential rotation. For IAM governance and compliance like SOX/PCI.
How this skill is triggered — by the user, by Claude, or both
Slash command
/cybersecurity-skills-zh:performing-service-account-auditThe summary Claude sees in its skill listing — used to decide when to auto-load this skill
审计企业基础设施中的服务账户,识别孤立账户、过度特权账户和不合规账户。本技能涵盖在 Active Directory、云平台、数据库和应用程序中发现服务账户,评估权限级别,识别缺失负责人,执行生命周期策略。
审计企业基础设施中的服务账户,识别孤立账户、过度特权账户和不合规账户。本技能涵盖在 Active Directory、云平台、数据库和应用程序中发现服务账户,评估权限级别,识别缺失负责人,执行生命周期策略。
ServicePrincipalName 的账户PasswordNeverExpires 标志的账户| 控制项 | NIST 800-53 | 描述 |
|---|---|---|
| 账户管理 | AC-2 | 服务账户生命周期 |
| 账户审查 | AC-2(3) | 账户定期审查 |
| 最小权限 | AC-6 | 最低服务账户权限 |
| 认证器管理 | IA-5 | 服务凭据轮换 |
| 审计审查 | AU-6 | 审查服务账户活动 |
npx claudepluginhub killvxk/cybersecurity-skills-zhAudits service accounts across Active Directory, AWS, Azure, GCP, databases, and apps to identify orphaned, over-privileged, and non-compliant ones. Useful for security assessments, compliance audits, and incident response.
Audits service accounts across Active Directory, cloud platforms, databases, and applications to identify orphaned, over-privileged, or non-compliant accounts for compliance and security.
Audits service accounts across Active Directory, cloud platforms, databases, and applications to identify orphaned, over-privileged, and non-compliant accounts.