infrastructure-security

Assess and harden infrastructure against vulnerabilities and configuration weaknesses.

Updated May 22, 2026
One-click install
npx skills add https://github.com/drupadsachania/aegis-skills --skill infrastructure-security-drupadsachania
Or copy as Structured Prompt for Agent▼
Please help me install this Agent Skill.
Skill: infrastructure-security
Source: https://github.com/drupadsachania/aegis-skills/tree/main/skills/infrastructure-security
Command: npx skills add https://github.com/drupadsachania/aegis-skills --skill infrastructure-security-drupadsachania

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

Systematically assess and harden infrastructure — servers, cloud workloads, containers, and network devices — against known vulnerabilities and configuration weaknesses.

Core Features & Use Cases

  • Phase-based assessment framework spanning asset discovery, configuration baseline, patch management, hardening controls, and compliance validation.
  • References content to support deep-dive analysis and generate artifact outputs per phase.
  • Applies across enterprise, cloud, hybrid, and on-premises environments for CIS Benchmark, NIST CSF, and MITRE-ATT&CK alignment.

Quick Start

Load a phase by name to begin the infrastructure-security workflow, e.g., asset-discovery.

Frequently Asked Questions about infrastructure-security

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I systematically assess and harden infrastructure against configuration weaknesses?▼

Infrastructure security assessment follows a phased workflow: asset discovery, configuration baseline, patch management, hardening controls, and compliance validation, producing artifact outputs and cross-reference documents for each phase.

What is the best way to align cloud workloads and servers with CIS Benchmarks?▼

Aligning cloud workloads and servers with CIS Benchmarks requires running hardening controls and configuration baselines across enterprise, cloud, hybrid, and on-premises environments to validate CIS compliance.

Does this infrastructure security workflow support hybrid and on-premises environments?▼

Yes, infrastructure security assessment explicitly supports enterprise, cloud, hybrid, and on-premises environments, assessing servers, cloud workloads, containers, and network devices for vulnerabilities and configuration weaknesses.

How do I start an asset discovery phase for infrastructure patch management?▼

Start asset discovery for patch management by loading the asset-discovery phase by name to systematically identify assets before applying patch management and hardening controls.

Can I use this approach to validate NIST CSF compliance for network devices?▼

Yes, you can validate NIST CSF compliance for network devices by running the compliance validation phase, which supports NIST CSF and MITRE-ATT&CK alignment alongside CIS Benchmarks across your infrastructure.

When do I need a phase-based framework for infrastructure hardening sprints?▼

You need a phase-based framework for infrastructure hardening sprints when you must systematically assess servers, cloud workloads, containers, and network devices across hybrid environments to ensure CIS/NIST compliance and patch management.