MITupdated 7d ago
Connect threats to controls for effective security planning.
What can you do with Threat Mitigation Mapping?
name: threat-mitigation-mapping description: Map identified threats to appropriate security controls and mitigations. Use when prioritizing security investments, creating remediation plans, or validating control effectiveness.
Threat Mitigation Mapping
Connect threats to controls for effective security planning.
When to Use This Skill
- Prioritizing security investments
- Creating remediation roadmaps
- Validating control coverage
- Designing defense-in-depth
- Security architecture review
- Risk treatment planning
Core Concepts
1. Control Categories
Preventive βββββΊ Stop attacks before they occur
β (Firewall, Input validation)
β
Detective ββββββΊ Identify attacks in progress
β (IDS, Log monitoring)
β
Corrective βββββΊ Respond and recover from attacks
(Incident response, Backup restore)
2. Control Layers
| Layer | Examples |
|---|---|
| Network | Firewall, WAF, DDoS protection |
| Application | Input validation, authentication |
| Data | Encryption, access controls |
| Endpoint | EDR, patch management |
| Process | Security training, incident response |
3. Defense in Depth
ββββββββββββββββββββββββ
β Perimeter β β Firewall, WAF
β ββββββββββββββββ β
β β Network β β β Segmentation, IDS
β β ββββββββββ β β
β β β Host β β β β EDR, Hardening
β β β ββββββ β β β
β β β βApp β β β β β Auth, Validation
β β β βDataβ β β β β Encryption
β β β ββββββ β β β
β β ββββββββββ β β
β ββββββββββββββββ β
ββββββββββββββββββββββββ
Templates and detailed worked examples
Full template library and detailed mitigation/control mappings live in references/details.md. Read that file when you need the concrete templates for: Mitigation Model, Defense in Depth scoring, Executive Summary scaffolding, Critical Gaps reporting, Recommendations, Implementation Roadmap, Results by Control.
Best Practices
Do's
- Map all threats - No threat should be unmapped
- Layer controls - Defense in depth is essential
- Mix control types - Preventive, detective, corrective
- Track effectiveness - Measure and improve
- Review regularly - Controls degrade over time
Don'ts
- Don't rely on single controls - Single points of failure
- Don't ignore cost - ROI matters
- Don't skip testing - Untested controls may fail
- Don't set and forget - Continuous improvement
- Don't ignore people/process - Technology alone isn't enough
Install
Add Threat Mitigation Mapping to your client. Pick the one you use.
npx skills add wshobson/agentsInstalls every skill in the repository, then prompts for which to keep.
/plugin marketplace add wshobson/agentsAdds the repository as a plugin marketplace; install individual plugins with `/plugin install`.
git clone https://github.com/wshobson/agents
cp -r plugins/security-scanning/skills/threat-mitigation-mapping ~/.claude/skills/A skill is a plain directory. Copy it into `.claude/skills/` in a project or in your home directory.
Score
73 / 100
Good