implementing-vulnerability-sla-breach-alerting

Featured

Build automated alerting for vulnerability remediation SLA breaches with severity-based timelines, escalation workflows, and compliance reporting dashboards.

AI & Automation 12,642 stars 1468 forks Updated today Apache-2.0

Install

View on GitHub

Quality Score: 99/100

Stars 20%
100
Recency 20%
100
Frontmatter 20%
70
Documentation 15%
100
Issue Health 10%
50
License 10%
100
Description 5%
100

Skill Content

# Implementing Vulnerability SLA Breach Alerting ## Overview Vulnerability remediation SLAs define maximum timeframes for addressing security findings based on severity. This skill covers building an automated alerting system that tracks remediation timelines, detects SLA breaches, sends escalation notifications, and generates compliance reports. Industry-standard SLA targets are: Critical (24-48 hours), High (15-30 days), Medium (60 days), Low (90 days). ## When to Use - When deploying or configuring implementing vulnerability sla breach alerting capabilities in your environment - When establishing security controls aligned to compliance requirements - When building or improving security architecture for this domain - When conducting security assessments that require this implementation ## Prerequisites - Python 3.9+ with `requests`, `pandas`, `jinja2`, `smtplib` libraries - Vulnerability management platform with API access (DefectDojo, Qualys, Tenable) - SMTP server or webhook endpoint (Slack, Microsoft Teams, PagerDuty) - Database for SLA tracking (PostgreSQL or SQLite) ## SLA Policy Definition ### Standard SLA Tiers | Severity | Remediation SLA | Grace Period | Escalation Level | |----------|----------------|--------------|-----------------| | Critical (CVSS 9.0-10.0) | 48 hours | 12 hours | VP Engineering + CISO | | High (CVSS 7.0-8.9) | 15 days | 5 days | Director of Engineering | | Medium (CVSS 4.0-6.9) | 60 days | 14 days | Team Lead | | Low (CVSS 0.1-3.9) |...

Details

Author
mukul975
Repository
mukul975/Anthropic-Cybersecurity-Skills
Created
3 months ago
Last Updated
today
Language
Python
License
Apache-2.0

Integrates with

Similar Skills

Semantically similar based on skill content — not just same category

AI & Automation Featured

building-vulnerability-aging-and-sla-tracking

Implement a vulnerability aging dashboard and SLA tracking system to measure remediation performance against severity-based timelines and drive accountability.

12,642 Updated today
mukul975
AI & Automation Featured

implementing-vulnerability-remediation-sla

Vulnerability remediation SLAs define mandatory timeframes for patching or mitigating identified vulnerabilities based on severity, asset criticality, and exploit availability. Effective SLA programs

12,642 Updated today
mukul975
AI & Automation Featured

building-vulnerability-exception-tracking-system

Build a vulnerability exception and risk acceptance tracking system with approval workflows, compensating controls documentation, and expiration management.

12,642 Updated today
mukul975
API & Backend Featured

performing-endpoint-vulnerability-remediation

Performs vulnerability remediation on endpoints by prioritizing CVEs based on risk scoring, deploying patches, applying configuration changes, and validating fixes. Use when remediating findings from vulnerability scans, responding to critical CVE advisories, or maintaining endpoint compliance with patch management SLAs. Activates for requests involving vulnerability remediation, CVE patching, endpoint vulnerability management, or security fix deployment.

12,642 Updated today
mukul975
AI & Automation Featured

building-vulnerability-scanning-workflow

Builds a structured vulnerability scanning workflow using tools like Nessus, Qualys, and OpenVAS to discover, prioritize, and track remediation of security vulnerabilities across infrastructure. Use when SOC teams need to establish recurring vulnerability assessment processes, integrate scan results with SIEM alerting, and build remediation tracking dashboards.

12,642 Updated today
mukul975