All skills
wshobson avatar

/threat-mitigation-mapping

@be57c0b
by Seth Hobsonwshobson/agents40k stars
4,281

Map identified threats to appropriate security controls and mitigations. Use when prioritizing security investments, creating remediation plans, or validating control effectiveness.

Use this Skill: https://skilld.dev/gh/wshobson/agents/threat-mitigation-mapping

This session only. Nothing lands on disk.

SKILL.md

β‰ˆ52 tokens always: the name and description. β‰ˆ778 when used: this file. β‰ˆ5.9k more on demand in 1 file.

Threat Mitigation Mapping

Connect threats to controls for effective security planning.

When to Use This Skill

  • Prioritizing security investments
  • Creating remediation roadmaps
  • Validating control coverage
  • Designing defense-in-depth
  • Security architecture review
  • Risk treatment planning

Core Concepts

1. Control Categories

Preventive ────► Stop attacks before they occur
   β”‚              (Firewall, Input validation)
   β”‚
Detective ─────► Identify attacks in progress
   β”‚              (IDS, Log monitoring)
   β”‚
Corrective ────► Respond and recover from attacks
                  (Incident response, Backup restore)

2. Control Layers

Layer Examples
Network Firewall, WAF, DDoS protection
Application Input validation, authentication
Data Encryption, access controls
Endpoint EDR, patch management
Process Security training, incident response

3. Defense in Depth

                    β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”
                    β”‚      Perimeter       β”‚ ← Firewall, WAF
                    β”‚   β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”   β”‚
                    β”‚   β”‚   Network    β”‚   β”‚ ← Segmentation, IDS
                    β”‚   β”‚  β”Œβ”€β”€β”€β”€β”€β”€β”€β”€β”  β”‚   β”‚
                    β”‚   β”‚  β”‚  Host  β”‚  β”‚   β”‚ ← EDR, Hardening
                    β”‚   β”‚  β”‚ β”Œβ”€β”€β”€β”€β” β”‚  β”‚   β”‚
                    β”‚   β”‚  β”‚ β”‚App β”‚ β”‚  β”‚   β”‚ ← Auth, Validation
                    β”‚   β”‚  β”‚ β”‚Dataβ”‚ β”‚  β”‚   β”‚ ← Encryption
                    β”‚   β”‚  β”‚ β””β”€β”€β”€β”€β”˜ β”‚  β”‚   β”‚
                    β”‚   β”‚  β””β”€β”€β”€β”€β”€β”€β”€β”€β”˜  β”‚   β”‚
                    β”‚   β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜   β”‚
                    β””β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”€β”˜

Templates and detailed worked examples

Full template library and detailed mitigation/control mappings live in references/details.md. Read that file when you need the concrete templates for: Mitigation Model, Defense in Depth scoring, Executive Summary scaffolding, Critical Gaps reporting, Recommendations, Implementation Roadmap, Results by Control.

Best Practices

Do's

  • Map all threats - No threat should be unmapped
  • Layer controls - Defense in depth is essential
  • Mix control types - Preventive, detective, corrective
  • Track effectiveness - Measure and improve
  • Review regularly - Controls degrade over time

Don'ts

  • Don't rely on single controls - Single points of failure
  • Don't ignore cost - ROI matters
  • Don't skip testing - Untested controls may fail
  • Don't set and forget - Continuous improvement
  • Don't ignore people/process - Technology alone isn't enough

Source: SKILL.md on GitHub

No alerts16d5 checks Β· Risk SAFE
  • Gen Agent Trust Hub16d

    The skill provides comprehensive documentation and Python code templates for threat mitigation mapping and security architecture review. It defines structured data models for threats, security controls, and risk analysis without any malicious functionality.

  • Socket16d

    No alerts

  • Snyk16d

    Risk: LOW Β· No issues

  • Runlayer6mo

    1 file scanned Β· No issues

  • ZeroLeaks5mo

    Score: 93/100 Β· 2 sections analyzed

Signed by skilld at be57c0b. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 3 days ago.

Activeupdated 4 months ago
  • threat-modeling
  • security-controls
  • risk-management
  • mitigation-planning
  • defense-in-depth
  • vulnerability-assessment
  • remediation
  • security-architecture

README badge

README badge for wshobson/agents/threat-mitigation-mapping

Maps identified threats to security controls and mitigations across network, application, data, endpoint, and process layers. Use this skill to prioritize security investments, validate control coverage, and design defense-in-depth strategies during risk treatment planning or security architecture reviews.

Generated from the current SKILL.md.

What is the difference between preventive, detective, and corrective controls?
Preventive controls stop attacks before they occur (e.g., firewalls, input validation). Detective controls identify attacks in progress (e.g., IDS, log monitoring). Corrective controls respond and recover after an attack (e.g., incident response, backup restore).
Does this skill help with defense-in-depth architecture?
Yes. The skill includes layered control models across network, application, data, endpoint, and process layers to design defense-in-depth strategies.
Where are the templates for creating mitigation roadmaps?
The skill references a `references/details.md` file that contains the full template library, including Mitigation Model, Defense in Depth scoring, Executive Summary scaffolding, and Implementation Roadmap templates.
Can this skill be used for validating existing security controls?
Yes. The skill explicitly supports validating control coverage and effectiveness as part of security architecture review and control validation workflows.

Generated from the current SKILL.md. These answers refresh after source changes.