ai · security · skills
Skill libraryBy ownership

CISO ACCOUNTABILITY

Where the line fallsbetween you and the provider.

The core AI security controls, read from the AI Customer's chair. Given how your organisation consumes AI — building and running it, or procuring a third-party — which controls sit on your side of the Shared Security Responsibility Model (SSRM)?

Our authored read of the SSRM, scoped to the core set — a navigation affordance, not a measured claim.

Posture:
ai-vendor-privacy-due-diligence-art28ProcuredAP

Use when an organisation is onboarding or auditing an AI vendor and needs to determine the correct GDPR controller-processor role (Art. 28 DPA vs. Art. 26 JCA…

GRC · Governance, Risk and Compliance
analyzing-email-headers-for-phishing-investigationOperatedProcured

Parse and analyze email headers to trace the origin of phishing emails, verify sender authenticity, and identify

SEF · Security Incident Management, E-Discovery, & Cloud Forensics
analyzing-security-logs-with-splunkOperatedProcured

Leverages Splunk Enterprise Security and SPL (Search Processing Language) to investigate security incidents

SEF · Security Incident Management, E-Discovery, & Cloud Forensics
assessing-an-ai-vendor-with-ai-caiqProcuredAP

Use when an organisation is onboarding or auditing an AI vendor (model provider, embedded-AI application provider, orchestrated services provider, or AI-feature…

STA · Supply Chain Management, Transparency, and Accountability
attesting-ai-authored-code-provenance-in-pull-requestsOperated

Tag and attest AI-assisted commits in pull requests so AI-authored code never rubber-stamps through review. Adds a structured commit trailer (Generated-by /…

AIS · Application & Interface Security
auditing-terraform-infrastructure-for-securityOperated

Auditing Terraform infrastructure-as-code for security misconfigurations using Checkov, tfsec, Terrascan, and

I&S · Infrastructure Security
authoring-model-cards-and-system-documentationOperated

Author the model card (the standard public/internal doc for an ML model) + the AI system documentation pack (the EU AI Act Annex IV technical doc for high-risk…

GRC · Governance, Risk and Compliance
automating-ioc-enrichmentOperatedProcured

Automates the enrichment of raw indicators of compromise with multi-source threat intelligence context using

TVM · Threat & Vulnerability Management
bounding-agent-autonomy-and-tool-scopes-least-privilegeOperatedProcured

Limit an AI agent's blast radius by declaring its tool scopes least-privilege — every callable tool has a permission scope, a per-action rate limit, a…

MDS · Model Security
building-detection-rule-with-splunk-splOperatedProcured

Build effective detection rules using Splunk Search Processing Language (SPL) correlation searches to identify

LOG · Logging and Monitoring
building-detection-rules-with-sigmaOperatedProcured

Builds vendor-agnostic detection rules using the Sigma rule format for threat detection across SIEM platforms

LOG · Logging and Monitoring
building-identity-governance-lifecycle-processOperatedProcured

Builds comprehensive identity governance and lifecycle management processes including joiner-mover-leaver automation,

IAM · Identity & Access Management
building-incident-timeline-with-timesketchOperatedProcured

Build collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source

SEF · Security Incident Management, E-Discovery, & Cloud Forensics
building-malware-incident-communication-templateOperatedProcured

Build structured communication templates for malware incidents including stakeholder notifications, executive

SEF · Security Incident Management, E-Discovery, & Cloud Forensics
building-threat-intelligence-enrichment-in-splunkOperatedProcured

Build automated threat intelligence enrichment pipelines in Splunk Enterprise Security using lookup tables, modular

LOG · Logging and Monitoring
building-vulnerability-aging-and-sla-trackingOperatedProcured

Implement a vulnerability aging dashboard and SLA tracking system to measure remediation performance against

TVM · Threat & Vulnerability Management
collecting-evidence-for-a-privacy-compliance-auditOperatedProcured

Plan and run defensible evidence collection for a privacy or data-protection audit: define evidence categories, apply quality criteria and sampling, maintain…

A&A · Audit & Assurance
collecting-threat-intelligence-with-mispOperatedProcured

MISP (Malware Information Sharing Platform) is an open-source threat intelligence platform for gathering, sharing,

TVM · Threat & Vulnerability Management
conducting-a-gdpr-data-protection-impact-assessmentOperatedProcured

Run a GDPR Article 35 Data Protection Impact Assessment end to end: screen for mandatory triggers, document the processing, assess necessity and…

GRC · Governance, Risk and Compliance
conducting-phishing-incident-responseOperatedProcured

Responds to phishing incidents by analyzing reported emails, extracting indicators, assessing credential compromise,

SEF · Security Incident Management, E-Discovery, & Cloud Forensics
configuring-windows-event-logging-for-detectionOperatedProcured

Configures Windows Event Logging with advanced audit policies to generate high-fidelity security events for

UEM · Universal Endpoint Management
detecting-container-drift-at-runtimeOperatedProcured

Detect unauthorized modifications to running containers by monitoring for binary execution drift, file system

I&S · Infrastructure Security
detecting-insider-data-exfiltration-via-dlpOperatedProcured

Detects insider data exfiltration by analyzing DLP policy violations, file access patterns, upload volume anomalies,

LOG · Logging and Monitoring
embedded-vendor-ai-feature-inventory-and-toggleProcuredAP

Use when an organisation needs to discover the AI features embedded inside SaaS tools it already pays for (productivity suites, CRM, helpdesk, code platforms,…

STA · Supply Chain Management, Transparency, and Accountability
enforcing-ide-ai-assistant-dlp-and-approved-endpointsOperated

Stop proprietary code and secrets from leaking into unsanctioned LLM assistants by pinning IDE traffic to approved enterprise endpoints and filtering outbound…

DSP · Data Security and Privacy Lifecycle Management
gating-hallucinated-and-slopsquatted-dependenciesOperated

Block hallucinated and slopsquatted package names from entering the build by verifying every newly-added dependency actually exists upstream and matches the…

STA · Supply Chain Management, Transparency, and Accountability
gating-irreversible-agent-actions-with-human-approvalOperatedProcured

Block irreversible agent actions (delete data, mass email, payment, cross-tenant change, prod write to a critical system) until a qualified human approves the…

IAM · Identity & Access Management
generating-a-gdpr-article-30-ropa-from-system-inventoriesOperatedProcured

Auto-populate Records of Processing Activities from IT system inventories — Active Directory, cloud service catalogs, API gateway logs, and database schemas —…

GRC · Governance, Risk and Compliance
generating-an-ai-bom-in-ci-with-cyclonedxOperated

Extend the SBOM to include models, datasets, prompts, fine-tunes, and agent tools — an AI-BOM — produced in CI on every build using CycloneDX ML-BOM…

STA · Supply Chain Management, Transparency, and Accountability
hardening-docker-containers-for-productionOperated

Hardening Docker containers for production involves applying security best practices aligned with CIS Docker

I&S · Infrastructure Security
hardening-windows-endpoint-with-cis-benchmarkOperatedProcured

Hardens Windows endpoints using CIS (Center for Internet Security) Benchmark recommendations to reduce attack

UEM · Universal Endpoint Management
implementing-aes-encryption-for-data-at-restOperatedProcured

AES (Advanced Encryption Standard) is a symmetric block cipher standardized by NIST (FIPS 197) used to protect

CEK · Cryptography, Encryption & Key Management
implementing-disk-encryption-with-bitlockerOperatedProcured

Implements full disk encryption using Microsoft BitLocker on Windows endpoints to protect data at rest from

UEM · Universal Endpoint Management
implementing-endpoint-detection-with-wazuhOperatedProcured

Deploy and configure Wazuh SIEM/XDR for endpoint detection including agent management, custom decoder and rule

LOG · Logging and Monitoring
implementing-kill-switch-and-rollback-for-autonomous-agentsOperatedProcured

Wire a globally-accessible kill switch and per-action rollback for any autonomous AI agent — the SOC can halt the agent within seconds via a feature flag,…

MDS · Model Security
implementing-log-forwarding-with-fluentdOperatedProcured

Configure Fluentd and Fluent Bit for centralized log aggregation, routing, filtering, and enrichment across distributed

LOG · Logging and Monitoring
implementing-semgrep-for-custom-sast-rulesOperated

Write custom Semgrep SAST rules in YAML to detect application-specific vulnerabilities, enforce coding standards,

AIS · Application & Interface Security
implementing-threat-modeling-with-mitre-attackOperatedProcured

Implements threat modeling using the MITRE ATT&CK framework to map adversary TTPs against organizational assets,

LOG · Logging and Monitoring
india-dpdp-act-2023-obligationsOperatedProcured

Use when an organisation processing digital personal data in India needs to build compliance with the Digital Personal Data Protection Act 2023, covering…

GRC · Governance, Risk and Compliance
integrating-sast-into-github-actions-pipelineOperated

This skill covers integrating Static Application Security Testing (SAST) tools—CodeQL and Semgrep—into GitHub

AIS · Application & Interface Security
performing-cloud-asset-inventory-with-cartographyOperatedProcured

Perform comprehensive cloud asset inventory and relationship mapping using Cartography to build a Neo4j security

I&S · Infrastructure Security
performing-cryptographic-audit-of-applicationOperatedProcured

A cryptographic audit systematically reviews an application's use of cryptographic primitives, protocols, and

CEK · Cryptography, Encryption & Key Management
performing-ioc-enrichment-automationOperatedProcured

Automates Indicator of Compromise (IOC) enrichment by orchestrating lookups across VirusTotal, AbuseIPDB, Shodan,

LOG · Logging and Monitoring
performing-physical-intrusion-assessmentOperatedProcured

Conduct authorized physical penetration testing using tailgating, badge cloning, lock bypassing, and rogue device

TVM · Threat & Vulnerability Management
performing-privacy-impact-assessmentOperatedProcured

Automates the Privacy Impact Assessment (PIA) workflow including data flow mapping, privacy risk scoring matrices,

GRC · Governance, Risk and Compliance
performing-threat-modeling-with-owasp-threat-dragonOperatedProcured

Use OWASP Threat Dragon to create data flow diagrams, identify threats using STRIDE and LINDDUN methodologies,

AIS · Application & Interface Security
performing-web-application-penetration-testOperatedProcured

Performs systematic security testing of web applications following the OWASP Web Security Testing Guide (WSTG)

TVM · Threat & Vulnerability Management
saas-vendor-privacy-inventoryProcuredAP

Use when building or reconciling a complete inventory of SaaS applications that process personal data, including shadow IT discovery via CASB, DNS-log analysis,…

STA · Supply Chain Management, Transparency, and Accountability
scanning-ai-generated-code-for-license-and-ip-contaminationOperated

Scan AI-generated code blocks for verbatim or near-verbatim matches against copyleft (GPL/AGPL) and proprietary corpora before they land on main, so AI…

STA · Supply Chain Management, Transparency, and Accountability
scanning-containers-with-trivy-in-cicdOperated

This skill covers integrating Aqua Security''s Trivy scanner into CI/CD pipelines for comprehensive container

AIS · Application & Interface Security

Our authored read of the SSRM, scoped to the core set — a navigation affordance, not a measured claim. Ownership and posture tags reflect our judgment of the AI-Customer obligation under the Cloud Security Alliance (CSA) AI Controls Matrix (AICM) v1.1.0 Shared Security Responsibility Model. Self-assessed, never certified.

Board view · two parties

Your side. Their side.

Two-party rollup for the board: every AI Controls Matrix (AICM) domain sits on your (Deployer) side or your provider's. The four-role view above (Cloud Service Provider (CSP) / Application Provider (AP) / Model Provider (MP) / Orchestrated Services Provider (OSP)) stays canonical for the practitioner judgment; same data, different altitude.

Typical case · 10 domains on the deployer side · 8 domains on the provider side · specific control objectives can sit on either side per their facts.

DomainTypical ownerWhy
IAM · Identity & Access ManagementDeployer (you, the AI Customer)Deployer owns its own identity directory + access decisions. Provider supplies IAM hooks; deployer wires them.
AIS · AI System SecurityDeployer (you, the AI Customer)Deployer owns secure-SDLC for AI apps it builds. Flips to Provider if the deployer only consumes the AI as a service.
MDS · Model SecurityProvider (CSP / AP / MP / OSP)Provider trains + serves the model. Deployer owns model-fitting + guardrails on its own data.
DSP · Data Security & PrivacyDeployer (you, the AI Customer)Deployer owns the data classification + lawful basis. Provider provides encryption + isolation.
CEK · Cryptography, Encryption & Key MgmtProvider (CSP / AP / MP / OSP)Provider operates the key-management substrate. Deployer owns key policy + BYOK decisions.
I&S · Infrastructure SecurityProvider (CSP / AP / MP / OSP)Provider operates the network + host substrate. Deployer owns east-west policy at its edge.
DCS · Datacenter SecurityProvider (CSP / AP / MP / OSP)Provider operates the physical datacenters. Deployer never sees this control surface.
UEM · Endpoint & Workload SecurityDeployer (you, the AI Customer)Deployer owns its endpoints + the workloads it places on the provider. Provider supplies the substrate.
CCC · Change & Config (cloud)Provider (CSP / AP / MP / OSP)Provider owns the cloud-platform change cadence. Deployer owns its own deploy-time change controls.
LOG · Logging & MonitoringDeployer (you, the AI Customer)Deployer owns its SIEM + the SOC. Provider supplies log feeds; deployer integrates them.
SEF · Security Incident MgmtDeployer (you, the AI Customer)Deployer owns its own incident response. Provider escalates platform-side incidents.
TVM · Threat & Vuln MgmtDeployer (you, the AI Customer)Deployer prioritises + remediates its own backlog. Provider patches its own substrate.
GRC · Governance, Risk & ComplianceDeployer (you, the AI Customer)Deployer always owns its policy + risk-management program. Provider offers attestations.
A&A · Audit & AssuranceDeployer (you, the AI Customer)Deployer is the audited party. Provider responds to questionnaires + supplies SOC reports.
STA · Supply Chain TransparencyProvider (CSP / AP / MP / OSP)Provider documents its own sub-processors + supply chain. Deployer owns its vendor-risk program.
BCR · Business Continuity & ResilienceProvider (CSP / AP / MP / OSP)Provider operates the resilient substrate. Deployer owns business-continuity at the application altitude.
IPY · Interoperability & PortabilityProvider (CSP / AP / MP / OSP)Provider supplies export + migration interfaces. Deployer owns its own exit strategy.
HRS · Human Resources SecurityDeployer (you, the AI Customer)Deployer owns its own staff training + EU AI Act Article 4 literacy duty. Provider trains its own staff.

Owned, shared, inherited — then who reskills

Build what you own, coordinate what is shared, verify what the provider inherits. The assessment result page joins the same gaps to persona skill deltas with this split attached.