information-security-security-strategist

Develop enterprise security strategy and governance frameworks for mid-to-large organizations.

110|19|Updated Feb 11, 2026
One-click install
npx skills add https://github.com/chendongqi/OPB-Skills --skill information-security-security-strategist
Or copy as Structured Prompt for Agent▼
Please help me install this Agent Skill.
Skill: information-security-security-strategist
Source: https://github.com/chendongqi/OPB-Skills/tree/main/skills/information-security-security-strategist
Command: npx skills add https://github.com/chendongqi/OPB-Skills --skill information-security-security-strategist

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Translating business goals into a comprehensive security program is complex; this Skill provides a structured approach to strategic planning, architecture, policy development, and governance to align security with business objectives.

Core Features & Use Cases

  • Security strategy planning and governance alignment with business objectives
  • Security architecture design using SABSA and zero-trust principles
  • Policy and governance development including standards and procedures
  • Compliance mapping and program setup for ISO27001 and related frameworks
  • Risk assessment, maturity evaluation, and security training planning

Quick Start

Run the security-strategy-writer to draft an enterprise security strategy aligned with business goals.

Frequently Asked Questions about information-security-security-strategist

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I develop an enterprise security strategy aligned with business objectives?▼

Enterprise security strategy development translates business goals into a structured security program using governance frameworks, zero-trust architecture principles, and risk assessment templates to align security controls with organizational objectives.

Can I use SABSA and zero-trust principles for security architecture design?▼

SABSA and zero-trust principles are applied during security architecture design to model structured enterprise frameworks, enabling risk mitigation and governance alignment for mid-to-large organizations.

What is the best way to map compliance for ISO27001 and related frameworks?▼

Compliance mapping for ISO27001 and related frameworks involves drafting security policies, setting up governance standards, and evaluating maturity to ensure enterprise security programs meet regulatory requirements.

How do I perform a security risk assessment and maturity evaluation?▼

Security risk assessment and maturity evaluation utilize structured templates to analyze governance gaps, measure compliance against ISO27001, and identify zero-trust architecture weaknesses for mid-to-large organizations.

Does this approach support security policy drafting and training planning?▼

Security policy drafting and training planning are supported through structured governance development, allowing organizations to create standards, procedures, and educational programs aligned with enterprise security strategy.