Loading...
Loading...
Expert in compliance frameworks (SOC2, ISO 27001), automated auditing, and risk management.
npx skill4agent add 404kidwiz/claude-supercode-skills security-auditorWhat is the business goal?
│
├─ **B2B SaaS Sales?**
│ ├─ US Market? → **SOC 2** (Trust Services Criteria)
│ └─ International? → **ISO 27001** (ISMS)
│
├─ **Regulated Industry?**
│ ├─ Healthcare (US)? → **HIPAA**
│ ├─ Payments? → **PCI-DSS**
│ └─ EU Personal Data? → **GDPR**
│
└─ **Federal/Gov?**
├─ US Federal? → **FedRAMP**
└─ Defense? → **CMMC**| Type | Frequency | Depth | Output |
|---|---|---|---|
| Gap Analysis | Once (Start) | High (Design) | Remediation Roadmap |
| Internal Audit | Quarterly | Medium (Sampling) | Internal Report & CAPA |
| Continuous | Real-time | High (Automated) | Dashboard / Alerts |
| External Audit | Annual | High (Evidence) | Attestation Report |
security-engineerlegal-advisor