Skills

Cloud Security Posture Review

verified
Updated May 13, 2026

What this skill does

Performs a comprehensive cloud security posture review against CIS benchmarks for AWS, GCP, or Azure. Checks identity, networking, logging, encryption, and compute configurations, then produces a scored findings report with prioritized remediation steps in a Google Sheet.

Example

PROMPT

We need a cloud security posture review of our AWS environment. 3 accounts (dev, staging, prod), 12 VPCs, 50+ EC2 instances, RDS, S3 buckets. Goal: align with CIS AWS Foundations Benchmark before our SOC2 audit. Output findings to a Google Sheet for tracking.

OUTPUT
Cloud Security Posture Review — AWS | CIS Benchmark Alignment Scope: 3 accounts, 12 VPCs | Review date: 2026-02-18 CIS BENCHMARK SCORES BY CATEGORY | Category | Pass | Fail | N/A | Score | |------------------|------|------|-----|-------| | Identity & Access| 12 | 3 | 1 | 80% | | Logging | 8 | 4 | 0 | 67% | | Networking | 15 | 2 | 2 | 88% | | Data Protection | 6 | 5 | 1 | 55% | | Monitoring | 4 | 2 | 0 | 67% | | OVERALL | 45 | 16 | 4 | 74% | TOP FAILURES (prioritized) 1. 1.4 – MFA not enabled for root (Critical) 2. 2.1.1 – S3 buckets not versioned (High) 3. 3.1 – CloudTrail not enabled in all regions (High) ... 13 more Generated: Google Sheet with Findings, Remediation, Owner columns

Required Tools

AWSAWS
Google SheetsGoogle Sheets

Compatible Agents

ClaudeClaude
CursorCursor
WindsurfWindsurf
ChatGPTChatGPT
GitHub CopilotGitHub Copilot
Any MCP-compatible agentAny MCP-compatible agent

Add to your agent

Download Skill

Or install via CLI:

$ npx skills add webrix-ai/agent-skills --skill cloud-security-posture-review

Deploy Org-wide

Provision to teams via RBAC
Identity-aware execution
Signed & verified skills
Full audit trail
Auto-bundled with required MCP servers
Use withwillow

Free for up to 5 users

Your agents are already in the wild.

Give them a Basecamp. Go from AI chaos to AI work, in minutes.

Cloud Security Posture Review | Willow Marketplace