Iso27001 Sdlc

Scan a software repository for ISO 27001:2022 compliance of its software development controls. Produces a per-control compliance report covering Annex A controls 8.4, 8.25–8.33 (source code access, secure SDLC, application security requirements, secure architecture, secure coding, security testing, outsourced development, environment separation, change management, and test data). Use this skill whenever a user mentions ISO 27001, ISMS compliance, security audit readiness, Annex A controls, secure SDLC compliance, or wants to check whether their codebase meets information security standards. Also trigger when the user asks about audit preparation for software development, security control gaps, or compliance posture of a repository — even if they don't mention ISO 27001 by name but describe wanting to verify security practices against a standard.

florianbuetow Updated

File contents

florianbuetow/claude-code/tree/main/plugins/iso27001-sdlc/skills/iso27001-sdlc commit f6547904be

Frequently asked questions

npx skillmds@latest add florianbuetow/iso27001-sdlc