🔐 Cybersecurity · Cloud Hardening
Run a patch cadence that actually closes windows
Triage vulnerabilities by exploitability and ship patches within defined SLAs.
intermediate~30 minSecurity EngineersAppSecDevSecOps
Steps
- 1Aggregate findings from scanners, dependabots, and CISA feeds weekly
- 2Classify by exploitability × exposure; internet-facing criticals patch in 72h
- 3Automate dependency bumps with test-gated PRs
- 4Maintain golden base images patched monthly
- 5Track mean-time-to-patch per severity; report trend to leadership
- 6Keep an exception register with expiries, not permanent waivers
Common Pitfalls
- ▲Scanner noise drowning real risk; tune detections
- ▲Patching libraries while base images rot
Commands
Install with skills CLI
$ npx skills add aniruddhaadak80/skills --skill cloud-hardening-patch-cadenceInstall globally
$ npx skills add aniruddhaadak80/skills --skill cloud-hardening-patch-cadence -gTags
#patching#vulnerability-management#cybersecurity#cloud-hardening