security-auditor
Security Auditor
Purpose
Provides security compliance and audit expertise specializing in SOC 2, ISO 27001, and regulatory frameworks. Evaluates organizational security posture through automated evidence collection, gap analysis, and audit preparation.
When to Use
- Preparing for a SOC 2 Type I or Type II audit
- Aligning infrastructure with ISO 27001 / HIPAA / PCI-DSS standards
- Automating evidence collection (Drata, Vanta, Secureframe)
- Conducting a Third-Party Risk Assessment (Vendor Review)
- Performing a Cloud Security Posture Review (CSPM)
- Designing internal audit programs
Examples
Example 1: SOC 2 Type II Preparation
More from neversight/skills_feed
ai-image-generation
|
7react-best-practices
Provides React patterns for hooks, effects, refs, and component design. Covers escape hatches, anti-patterns, and correct effect usage. Must use when reading or writing React components (.tsx, .jsx files with React imports).
7ui-designer
Use when user needs visual UI design, interface creation, component systems, design systems, interaction patterns, or accessibility-focused user interfaces.
7python-env
Fast Python environment management with uv (10-100x faster than pip). Triggers on: uv, venv, pip, pyproject, python environment, install package, dependencies.
7typescript-best-practices
Provides TypeScript patterns for type-first development, making illegal states unrepresentable, exhaustive handling, and runtime validation. Must use when reading or writing TypeScript/JavaScript files.
6ai-marketing-videos
|
6