feat: add NIST CSF 2.0 nist_csf field to all 754 cybersecurity skills

Mapped every skill to NIST CSF 2.0 subcategory IDs (GV/ID/PR/DE/RS/RC functions)
based on subdomain and content analysis. Restores 11 skills corrupted during
prior rebase, re-enriching with ATLAS, D3FEND, NIST AI RMF, and CSF 2.0 fields.

All 754 skills now carry structured mappings for all 5 security frameworks:
- MITRE ATT&CK (in tags)
- MITRE ATLAS v5.5 (atlas_techniques)
- MITRE D3FEND v1.3 (d3fend_techniques)
- NIST AI RMF 1.0 (nist_ai_rmf)
- NIST CSF 2.0 (nist_csf)
This commit is contained in:
mukul975
2026-04-06 11:17:40 +02:00
parent e8105a2f4d
commit efca3ec611
754 changed files with 12847 additions and 2832 deletions
@@ -1,17 +1,30 @@
---
name: performing-cloud-log-forensics-with-athena
description: >
Uses AWS Athena to query CloudTrail, VPC Flow Logs, S3 access logs, and ALB logs
for forensic investigation. Covers CREATE TABLE DDL with partition projection,
forensic SQL queries for detecting unauthorized access, data exfiltration, lateral
movement, and privilege escalation. Use when investigating AWS security incidents
or building cloud-native forensic workflows at scale.
description: 'Uses AWS Athena to query CloudTrail, VPC Flow Logs, S3 access logs, and ALB logs for forensic investigation.
Covers CREATE TABLE DDL with partition projection, forensic SQL queries for detecting unauthorized access, data exfiltration,
lateral movement, and privilege escalation. Use when investigating AWS security incidents or building cloud-native forensic
workflows at scale.
'
domain: cybersecurity
subdomain: cloud-security
tags: [cloud, forensics, athena, aws, cloudtrail, vpc-flow-logs, s3, alb]
version: "1.0"
tags:
- cloud
- forensics
- athena
- aws
- cloudtrail
- vpc-flow-logs
- s3
- alb
version: '1.0'
author: mukul975
license: Apache-2.0
nist_csf:
- PR.IR-01
- ID.AM-08
- GV.SC-06
- DE.CM-01
---
# Performing Cloud Log Forensics with AWS Athena