Cybersecurity Automation Portfolio 30 n8n Workflows — Security skill for Claude Code
30 ready-to-import n8n workflows for security operations across three tiers (Basic, Mid, Advanced).
How to install Cybersecurity Automation Portfolio 30 n8n Workflows
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open ztsprofessionalaiid7-alt/Cybersecurity-Automation-Portfolio-30-n8n-Workflows and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
What Cybersecurity Automation Portfolio 30 n8n Workflows does
30 ready-to-import n8n workflows for security operations across three tiers (Basic, Mid, Advanced). They cover SOC triage, phishing remediation, incident response, compliance auditing, DLP and vendor risk, using AI agents (Claude, Gemini, GPT), RAG, and human-in-the-loop approvals.
Alternatives in Security
- Anthropic Cybersecurity Skills — 734+ structured cybersecurity skills for AI agents · MITRE ATT&CK mapped · agentskills.io open standard · Work 3.8k ★
- Mcpick — Vendor-neutral MCP configuration manager — one CLI to add, toggle, and audit MCP servers and skills across eve 94 ★
- AegisGate — Open-source security gateway for LLM APIs — prompt injection detection, PII redaction, dangerous response sani 62 ★
README
Cybersecurity Automation Portfolio — Mid Level (10)
This repository brings together ten n8n workflows from the **Mid-Level Cybersecurity Automation** portfolio. Each workflow automates a specific security operation — SOC ticketing, phishing remediation, incident response, login-anomaly detection, dark-web monitoring, compliance auditing, vulnerability triage, data-loss prevention, and a central security-operations dashboard — combining AI agents, Slack/Discord/Twilio notifications, Postgres logging, and Jira/ServiceNow ticketing.
📑 Table of Contents
- Security Incident Ticketing & SOC Automation System
- Phishing Email Triage & Auto-Remediation Pipeline
- Cybersecurity Incident Response Automation
- Brute-Force / Anomalous Login Detection & Auto-Response
- Dark Web Monitor & Identity Protection
- Continuous Compliance Audit Automation (SOC2/ISO27001)
- Autonomous Vulnerability Scan Triage & Remediation
- Behavioral Data Loss Prevention (DLP) System
- VIP & Sensitive Data Loss Prevention (DLP) Alert
- AI Security Operations Dashboard
📌 Introduction
Together, these ten automations form a **mid-level security operations stack** — more complex than basic-tier monitoring/alerting automations, since they incorporate AI-agent-driven decision-making (triage, risk scoring, classification), multi-branch routing across systems, and human-in-the-loop verification (Slack approvals, wait steps) — while not yet reaching the complexity of a fully autono
Related Skills
Intutic
The open source circuit breaker for AI agents. Real-time security, secret DLP, graph guardrails and loop burn
Agent Security Super Skill
Comprehensive AI agent security skill — prompt injection defense, skill validation, memory poisoning preventio
Security AI Workflows
AI assistants can support security engineering through code analysis, threat identification, configuration rev
Headless Harness Bench
Benchmark of 6 coding-agent harnesses (omp/pi/fx/opencode/dsh/crush) as headless agent loops driven by a contr
Headless Upgrade
Headless autonomous-run skill. Folds in /done /clear /continue /compact /memory /audit /test /iterate /new-tec
Arch Crusade
Unleash parallel Architecture Purist agents to audit layer boundaries, import graphs, and structural integrity
Related Agents
Prioritization Agent
Research and maintain a ranked vendor/company list for a target market (e.g. Cybersecurity, Fintech), scored a
Data Exfiltrator
Delegates to this agent when the user wants to test exfiltration and DLP/egress controls during an authorized
Editor Videos
Genera videos verticales para TikTok (edits de juegos/pelis y brain rots) con el pipeline local ffmpeg + Polli