Skill library›By ownership

CISO ACCOUNTABILITY

Where the line fallsbetween you and the provider.

The core AI security controls, read from the AI Customer's chair. Given how your organisation consumes AI — building and running it, or procuring a third-party — which controls sit on your side of the Shared Security Responsibility Model (SSRM)?

Our authored read of the SSRM, scoped to the core set — a navigation affordance, not a measured claim.

Posture:
ai-vendor-privacy-due-diligence-art28Procured↔ AP

Use when an organisation is onboarding or auditing an AI vendor and needs to determine the correct GDPR controller-processor role (Art. 28 DPA vs. Art. 26 JCA…

GRC · Governance, Risk and Compliance ↗
analyzing-email-headers-for-phishing-investigationOperatedProcured

Parse and analyze email headers to trace the origin of phishing emails, verify sender authenticity, and identify

SEF · Security Incident Management, E-Discovery, & Cloud Forensics ↗
analyzing-security-logs-with-splunkOperatedProcured

Leverages Splunk Enterprise Security and SPL (Search Processing Language) to investigate security incidents

SEF · Security Incident Management, E-Discovery, & Cloud Forensics ↗
assessing-an-ai-vendor-with-ai-caiqProcured↔ AP

Use when an organisation is onboarding or auditing an AI vendor (model provider, embedded-AI application provider, orchestrated services provider, or AI-feature…

STA · Supply Chain Management, Transparency, and Accountability ↗
attesting-ai-authored-code-provenance-in-pull-requestsOperated

Tag and attest AI-assisted commits in pull requests so AI-authored code never rubber-stamps through review. Adds a structured commit trailer (Generated-by /…

AIS · Application & Interface Security ↗
auditing-terraform-infrastructure-for-securityOperated

Auditing Terraform infrastructure-as-code for security misconfigurations using Checkov, tfsec, Terrascan, and

I&S · Infrastructure Security ↗
authoring-model-cards-and-system-documentationOperated

Author the model card (the standard public/internal doc for an ML model) + the AI system documentation pack (the EU AI Act Annex IV technical doc for high-risk…

GRC · Governance, Risk and Compliance ↗
automating-ioc-enrichmentOperatedProcured

Automates the enrichment of raw indicators of compromise with multi-source threat intelligence context using

TVM · Threat & Vulnerability Management ↗
bounding-agent-autonomy-and-tool-scopes-least-privilegeOperatedProcured

Limit an AI agent's blast radius by declaring its tool scopes least-privilege — every callable tool has a permission scope, a per-action rate limit, a…

MDS · Model Security ↗
building-detection-rule-with-splunk-splOperatedProcured

Build effective detection rules using Splunk Search Processing Language (SPL) correlation searches to identify

LOG · Logging and Monitoring ↗
building-detection-rules-with-sigmaOperatedProcured

Builds vendor-agnostic detection rules using the Sigma rule format for threat detection across SIEM platforms

LOG · Logging and Monitoring ↗
building-identity-governance-lifecycle-processOperatedProcured

Builds comprehensive identity governance and lifecycle management processes including joiner-mover-leaver automation,

IAM · Identity & Access Management ↗
building-incident-timeline-with-timesketchOperatedProcured

Build collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source

SEF · Security Incident Management, E-Discovery, & Cloud Forensics ↗
building-malware-incident-communication-templateOperatedProcured

Build structured communication templates for malware incidents including stakeholder notifications, executive

SEF · Security Incident Management, E-Discovery, & Cloud Forensics ↗
building-threat-intelligence-enrichment-in-splunkOperatedProcured

Build automated threat intelligence enrichment pipelines in Splunk Enterprise Security using lookup tables, modular

LOG · Logging and Monitoring ↗
building-vulnerability-aging-and-sla-trackingOperatedProcured

Implement a vulnerability aging dashboard and SLA tracking system to measure remediation performance against

TVM · Threat & Vulnerability Management ↗
collecting-evidence-for-a-privacy-compliance-auditOperatedProcured

Plan and run defensible evidence collection for a privacy or data-protection audit: define evidence categories, apply quality criteria and sampling, maintain…

A&A · Audit & Assurance ↗
collecting-threat-intelligence-with-mispOperatedProcured

MISP (Malware Information Sharing Platform) is an open-source threat intelligence platform for gathering, sharing,

TVM · Threat & Vulnerability Management ↗
conducting-a-gdpr-data-protection-impact-assessmentOperatedProcured

Run a GDPR Article 35 Data Protection Impact Assessment end to end: screen for mandatory triggers, document the processing, assess necessity and…

GRC · Governance, Risk and Compliance ↗
conducting-phishing-incident-responseOperatedProcured

Responds to phishing incidents by analyzing reported emails, extracting indicators, assessing credential compromise,

SEF · Security Incident Management, E-Discovery, & Cloud Forensics ↗
configuring-windows-event-logging-for-detectionOperatedProcured

Configures Windows Event Logging with advanced audit policies to generate high-fidelity security events for

UEM · Universal Endpoint Management ↗
detecting-container-drift-at-runtimeOperatedProcured

Detect unauthorized modifications to running containers by monitoring for binary execution drift, file system

I&S · Infrastructure Security ↗
detecting-insider-data-exfiltration-via-dlpOperatedProcured

Detects insider data exfiltration by analyzing DLP policy violations, file access patterns, upload volume anomalies,

LOG · Logging and Monitoring ↗
embedded-vendor-ai-feature-inventory-and-toggleProcured↔ AP

Use when an organisation needs to discover the AI features embedded inside SaaS tools it already pays for (productivity suites, CRM, helpdesk, code platforms,…

STA · Supply Chain Management, Transparency, and Accountability ↗
enforcing-ide-ai-assistant-dlp-and-approved-endpointsOperated

Stop proprietary code and secrets from leaking into unsanctioned LLM assistants by pinning IDE traffic to approved enterprise endpoints and filtering outbound…

DSP · Data Security and Privacy Lifecycle Management ↗
gating-hallucinated-and-slopsquatted-dependenciesOperated

Block hallucinated and slopsquatted package names from entering the build by verifying every newly-added dependency actually exists upstream and matches the…

STA · Supply Chain Management, Transparency, and Accountability ↗
gating-irreversible-agent-actions-with-human-approvalOperatedProcured

Block irreversible agent actions (delete data, mass email, payment, cross-tenant change, prod write to a critical system) until a qualified human approves the…

IAM · Identity & Access Management ↗
generating-a-gdpr-article-30-ropa-from-system-inventoriesOperatedProcured

Auto-populate Records of Processing Activities from IT system inventories — Active Directory, cloud service catalogs, API gateway logs, and database schemas —…

GRC · Governance, Risk and Compliance ↗
generating-an-ai-bom-in-ci-with-cyclonedxOperated

Extend the SBOM to include models, datasets, prompts, fine-tunes, and agent tools — an AI-BOM — produced in CI on every build using CycloneDX ML-BOM…

STA · Supply Chain Management, Transparency, and Accountability ↗
hardening-docker-containers-for-productionOperated

Hardening Docker containers for production involves applying security best practices aligned with CIS Docker

I&S · Infrastructure Security ↗
hardening-windows-endpoint-with-cis-benchmarkOperatedProcured

Hardens Windows endpoints using CIS (Center for Internet Security) Benchmark recommendations to reduce attack

UEM · Universal Endpoint Management ↗
implementing-aes-encryption-for-data-at-restOperatedProcured

AES (Advanced Encryption Standard) is a symmetric block cipher standardized by NIST (FIPS 197) used to protect

CEK · Cryptography, Encryption & Key Management ↗
implementing-disk-encryption-with-bitlockerOperatedProcured

Implements full disk encryption using Microsoft BitLocker on Windows endpoints to protect data at rest from

UEM · Universal Endpoint Management ↗
implementing-endpoint-detection-with-wazuhOperatedProcured

Deploy and configure Wazuh SIEM/XDR for endpoint detection including agent management, custom decoder and rule

LOG · Logging and Monitoring ↗
implementing-kill-switch-and-rollback-for-autonomous-agentsOperatedProcured

Wire a globally-accessible kill switch and per-action rollback for any autonomous AI agent — the SOC can halt the agent within seconds via a feature flag,…

MDS · Model Security ↗
implementing-log-forwarding-with-fluentdOperatedProcured

Configure Fluentd and Fluent Bit for centralized log aggregation, routing, filtering, and enrichment across distributed

LOG · Logging and Monitoring ↗
implementing-semgrep-for-custom-sast-rulesOperated

Write custom Semgrep SAST rules in YAML to detect application-specific vulnerabilities, enforce coding standards,

AIS · Application & Interface Security ↗
implementing-threat-modeling-with-mitre-attackOperatedProcured

Implements threat modeling using the MITRE ATT&CK framework to map adversary TTPs against organizational assets,

LOG · Logging and Monitoring ↗
india-dpdp-act-2023-obligationsOperatedProcured

Use when an organisation processing digital personal data in India needs to build compliance with the Digital Personal Data Protection Act 2023, covering…

GRC · Governance, Risk and Compliance ↗
integrating-sast-into-github-actions-pipelineOperated

This skill covers integrating Static Application Security Testing (SAST) tools—CodeQL and Semgrep—into GitHub

AIS · Application & Interface Security ↗
performing-cloud-asset-inventory-with-cartographyOperatedProcured

Perform comprehensive cloud asset inventory and relationship mapping using Cartography to build a Neo4j security

I&S · Infrastructure Security ↗
performing-cryptographic-audit-of-applicationOperatedProcured

A cryptographic audit systematically reviews an application's use of cryptographic primitives, protocols, and

CEK · Cryptography, Encryption & Key Management ↗
performing-ioc-enrichment-automationOperatedProcured

Automates Indicator of Compromise (IOC) enrichment by orchestrating lookups across VirusTotal, AbuseIPDB, Shodan,

LOG · Logging and Monitoring ↗
performing-physical-intrusion-assessmentOperatedProcured

Conduct authorized physical penetration testing using tailgating, badge cloning, lock bypassing, and rogue device

TVM · Threat & Vulnerability Management ↗
performing-privacy-impact-assessmentOperatedProcured

Automates the Privacy Impact Assessment (PIA) workflow including data flow mapping, privacy risk scoring matrices,

GRC · Governance, Risk and Compliance ↗
performing-threat-modeling-with-owasp-threat-dragonOperatedProcured

Use OWASP Threat Dragon to create data flow diagrams, identify threats using STRIDE and LINDDUN methodologies,

AIS · Application & Interface Security ↗
performing-web-application-penetration-testOperatedProcured

Performs systematic security testing of web applications following the OWASP Web Security Testing Guide (WSTG)

TVM · Threat & Vulnerability Management ↗
saas-vendor-privacy-inventoryProcured↔ AP

Use when building or reconciling a complete inventory of SaaS applications that process personal data, including shadow IT discovery via CASB, DNS-log analysis,…

STA · Supply Chain Management, Transparency, and Accountability ↗
scanning-ai-generated-code-for-license-and-ip-contaminationOperated

Scan AI-generated code blocks for verbatim or near-verbatim matches against copyleft (GPL/AGPL) and proprietary corpora before they land on main, so AI…

STA · Supply Chain Management, Transparency, and Accountability ↗
scanning-containers-with-trivy-in-cicdOperated

This skill covers integrating Aqua Security''s Trivy scanner into CI/CD pipelines for comprehensive container

AIS · Application & Interface Security ↗

Our authored read of the SSRM, scoped to the core set — a navigation affordance, not a measured claim. Ownership and posture tags reflect our judgment of the AI-Customer obligation under the Cloud Security Alliance (CSA) AI Controls Matrix (AICM) v1.1.0 Shared Security Responsibility Model. Self-assessed, never certified.

Board view · two parties

Your side. Their side.

Two-party rollup for the board: every AI Controls Matrix (AICM) domain sits on your (Deployer) side or your provider's. The four-role view above (Cloud Service Provider (CSP) / Application Provider (AP) / Model Provider (MP) / Orchestrated Services Provider (OSP)) stays canonical for the practitioner judgment; same data, different altitude.

Typical case · 10 domains on the deployer side · 8 domains on the provider side · specific control objectives can sit on either side per their facts.

DomainTypical ownerWhy
IAM · Identity & Access ManagementDeployer (you, the AI Customer)Deployer owns its own identity directory + access decisions. Provider supplies IAM hooks; deployer wires them.
AIS · AI System SecurityDeployer (you, the AI Customer)Deployer owns secure-SDLC for AI apps it builds. Flips to Provider if the deployer only consumes the AI as a service.
MDS · Model SecurityProvider (CSP / AP / MP / OSP)Provider trains + serves the model. Deployer owns model-fitting + guardrails on its own data.
DSP · Data Security & PrivacyDeployer (you, the AI Customer)Deployer owns the data classification + lawful basis. Provider provides encryption + isolation.
CEK · Cryptography, Encryption & Key MgmtProvider (CSP / AP / MP / OSP)Provider operates the key-management substrate. Deployer owns key policy + BYOK decisions.
I&S · Infrastructure SecurityProvider (CSP / AP / MP / OSP)Provider operates the network + host substrate. Deployer owns east-west policy at its edge.
DCS · Datacenter SecurityProvider (CSP / AP / MP / OSP)Provider operates the physical datacenters. Deployer never sees this control surface.
UEM · Endpoint & Workload SecurityDeployer (you, the AI Customer)Deployer owns its endpoints + the workloads it places on the provider. Provider supplies the substrate.
CCC · Change & Config (cloud)Provider (CSP / AP / MP / OSP)Provider owns the cloud-platform change cadence. Deployer owns its own deploy-time change controls.
LOG · Logging & MonitoringDeployer (you, the AI Customer)Deployer owns its SIEM + the SOC. Provider supplies log feeds; deployer integrates them.
SEF · Security Incident MgmtDeployer (you, the AI Customer)Deployer owns its own incident response. Provider escalates platform-side incidents.
TVM · Threat & Vuln MgmtDeployer (you, the AI Customer)Deployer prioritises + remediates its own backlog. Provider patches its own substrate.
GRC · Governance, Risk & ComplianceDeployer (you, the AI Customer)Deployer always owns its policy + risk-management program. Provider offers attestations.
A&A · Audit & AssuranceDeployer (you, the AI Customer)Deployer is the audited party. Provider responds to questionnaires + supplies SOC reports.
STA · Supply Chain TransparencyProvider (CSP / AP / MP / OSP)Provider documents its own sub-processors + supply chain. Deployer owns its vendor-risk program.
BCR · Business Continuity & ResilienceProvider (CSP / AP / MP / OSP)Provider operates the resilient substrate. Deployer owns business-continuity at the application altitude.
IPY · Interoperability & PortabilityProvider (CSP / AP / MP / OSP)Provider supplies export + migration interfaces. Deployer owns its own exit strategy.
HRS · Human Resources SecurityDeployer (you, the AI Customer)Deployer owns its own staff training + EU AI Act Article 4 literacy duty. Provider trains its own staff.

Owned, shared, inherited — then who reskills

Build what you own, coordinate what is shared, verify what the provider inherits. The assessment result page joins the same gaps to persona skill deltas with this split attached.