kics

Installation
SKILL.md

Checkmarx KICS (Keeping Infrastructure as Code Secure)

When to Use KICS

Ideal scenarios:

  • Infrastructure as Code (IaC) security scanning
  • Cloud configuration analysis (AWS, Azure, GCP, Oracle)
  • Kubernetes manifest security review
  • Dockerfile security hardening
  • Terraform/OpenTofu security assessment
  • Ansible playbook security validation
  • CI/CD pipeline IaC security gates
  • Compliance checking (CIS, PCI-DSS, NIST, SOC2)

Complements other tools:

  • Use alongside application security scanners (Semgrep, CodeQL)
  • Combine with SARIF Issue Reporter for detailed findings
Related skills
Installs
7
GitHub Stars
4
First Seen
Feb 19, 2026