Claude Skill
Sushegaad/Claude-Skills-Governance-Risk-and-Compliance
为 ISO 27001、SOC 2、FedRAMP、GDPR、HIPAA、NIST CSF、PCI DSS 等提供专家级 GRC 指导。基准测试准确率 95%。开源 Claude Skill。
概览
仓库信息
安装这个 Skill
git clone https://github.com/Sushegaad/Claude-Skills-Governance-Risk-and-Compliance.gitRegistry 信息
项目简介
Claude 治理、风险与合规(GRC)技能为 20 多个主要框架提供专家级合规指导,包括 ISO 27001、SOC 2、FedRAMP、GDPR、HIPAA、NIST CSF、PCI DSS、TSA 网络安全、ISO 42001、ISO 27701、DORA、印度 DPDPA、CMMC 2.0、NIST AI 风险、SWIFT、澳大利亚 ISM、欧盟 NIS2 和 CCPA/CPRA。基准测试准确率 95%,对比基线 80%。
Claude Skills for Governance, Risk, & Compliance (GRC): Expert-level compliance guidance for ISO 27001, SOC 2, FedRAMP, GDPR, HIPAA, NIST CSF, PCI DSS, EU AI Act, ISO 42001, ISO 27701, DORA, CSRD, India's DPDPA, CMMC 2.0, NIST AI Risk, SWIFT, Australia's ISM, EU NIS2, and CCPA/CPRA. Benchmark 97% (with skills) vs 81% (without skills).
要点
- 一个技能覆盖 20 多个全球合规框架
- GRC 指导基准测试准确率达 95%
- 为 ISO、NIST、GDPR、HIPAA 等提供专家级支持
- 专为治理、风险管理和审计准备而设计
- 定期更新以反映最新监管变化
使用场景
- 为 ISO 27001 或 SOC 2 认证审计做准备
- 评估并记录 GDPR 或 CCPA/CPRA 合规性
- 实施 NIST CSF 或 FedRAMP 安全控制
- 管理 HIPAA 或 PCI DSS 合规项目
- 应对 DORA、DPDPA 或 NIS2 等新兴法规
README 摘要
# Claude Skills for Governance, Risk & Compliance (GRC) Expert-level compliance guidance for ISO 27001, SOC 2, FedRAMP, GDPR, HIPAA, NIST CSF, PCI DSS, TSA Cybersecurity, ISO 42001 AI Management System, ISO 27701 Privacy Information Management, DORA Digital Operational Resilience, India's Digital Personal Data Protection Act (DPDPA), CMMC 2.0 Cybersecurity Maturity Model Certification, NIST AI Risk Management Framework, SWIFT Customer Security Programme (CSP), Australian Information Security Manual (ISM), EU NIS2 Directive, CCPA/CPRA California Privacy, ITAR (International Traffic in Arms Regulations), Brazil's LGPD (Lei Geral de Proteção de Dados), EU CSRD (Corporate Sustainability Reporting Directive), CIS Controls v8 (CIS Top 18), EAR (Export Administration Regulations), NIST SP 800-53 (Security and Privacy Controls for Federal Systems), EU AI Act (Regulation (EU) 2024/1689), Section 508 (US Federal ICT Accessibility), WCAG (Web Content Accessibility Guidelines), NZISM (New Zealand Information Security Manual), Vietnam PDPL (Law on Personal Data Protection No. 91/2025/QH15), and EU CRA (Cyber Resilience Act, Regulation (EU) 2024/2847) — powered by Claude Skills. Benchmarked across 150 test cases (5 per framework) using the eval framework — each graded against 5 verifiable assertions by independent agents. Skills scored **96%** vs a baseline of **81%** across 675 total assertions. [](../../releases/tag/v1.2.0) [](LICENSE) [](#the-skills) [](https://claude.ai) [![GitHub Stars](https: