research
Start or resume an academic research project — idea through literature, methodology, writing, feedback, and publishing
Verify specific CIS Control implementation from 18 controls
> /plugin marketplace add GRCEngClub/claude-grc-engineeringHow it fires
How this command gets triggered: by you, by Claude, or both.
/control-checkContext preview
What this command does when you run it.
Verify specific CIS Control implementation from 18 controls
description: Verify specific CIS Control implementation from 18 controls
> _CIS Controls v8 content used under CC BY-SA 4.0 from the Center for Internet Security. This command's CIS-derived content is CC BY-SA 4.0. See [LICENSE-CIS.md](../LICENSE-CIS.md)._
Provides detailed implementation guidance and verification for specific CIS Controls v8 controls.
**IG Level**: IG1 | **Safeguards**: 5 (IG1: 5, IG2: 5, IG3: 5)
**Purpose**: Actively manage all enterprise assets connected to infrastructure
**Key Safeguards**:
**Implementation**:
**Common Tools**: ServiceNow, Lansweeper, Qualys, Nessus
---
**IG Level**: IG1 | **Safeguards**: 7 (IG1: 4, IG2: 6, IG3: 7)
**Purpose**: Actively manage all software on the network
**Key Safeguards**:
**Implementation**:
**Common Tools**: Microsoft Endpoint Manager, Flexera, Snow Software
---
**IG Level**: IG1 | **Safeguards**: 14 (IG1: 3, IG2: 11, IG3: 14)
**Purpose**: Protect data at rest and in transit
**Key Safeguards**:
**Implementation**:
**Common Tools**: Microsoft Purview, Varonis, Symantec DLP
---
**IG Level**: IG1 | **Safeguards**: 12 (IG1: 5, IG2: 10, IG3: 12)
**Purpose**: Establish and maintain secure configurations
**Key Safeguards**:
**Implementation**:
**Common Tools**: CIS-CAT Pro, Ansible, Puppet, Chef
---
**IG Level**: IG1 | **Safeguards**: 6 (IG1: 4, IG2: 6, IG3: 6)
**Purpose**: Manage lifecycle of system and application accounts
**Key Safeguards**:
**Implementation**:
**Common Tools**: Active Directory, Okta, Duo, CyberArk
---
**IG Level**: IG1 | **Safeguards**: 8 (IG1: 3, IG2: 6, IG3: 8)
**Purpose**: Apply the principle of least privilege
**Key Safeguards**:
**Implementation**:
**Common Tools**: SailPoint, Saviynt, Azure AD
---
**IG Level**: IG1 | **Safeguards**: 7 (IG1: 3, IG2: 6, IG3: 7)
**Purpose**: Develop process to continuously identify and remediate vulnerabilities
**Key Safeguards**:
**Implementation**:
**Common Tools**: Qualys VMDR, Te
Open-source GRC Engineering resource for Claude. claude-grc-engineering turns technical evidence from cloud, SaaS, code, and security tools into framework-aligned findings, gap reports, remediation guidance, evidence packages, and OSCAL workflows.
Repo: GRCEngClub/claude-grc-engineering
Start or resume an academic research project — idea through literature, methodology, writing, feedback, and publishing
Query AWS for compliance-relevant configuration across IAM, S3, CloudTrail, EBS, and emit findings conforming to the v1 contract.
Install the frdocx-to-froscal-ssp Python pipeline and verify its dependencies. Idempotent.
Retrieve a single AWS Secrets Manager secret value to stdout or a 0600-permission file. Opt-in retrieval mode — never writes to the findings cache.
Run testssl.sh against one or more HTTPS endpoints and emit v1 Findings mapped to SOC 2, NIST 800-53, PCI DSS 4.0.1, ISO 27001, and SCF controls.