# Tech Hub Security

> Security Lead agent coordinating Security Architects, Compliance Officers, and Security Hardeners. Use this skill for PII detection, threat modeling, IAM design, secrets management, application security (OWASP), infrastructure security, compliance frameworks (GDPR, HIPAA, SOC 2, PCI-DSS, ISO 27001), vulnerability scanning, and security hardening. Triggers on keywords like PII, security, compliance, GDPR, IAM, authentication, encryption, vulnerability, audit, or any task touching personal data or production systems.

- Skill: `yakoub-ai/tech-hub-security` (Agent Skill, multi-file: 2 files)
- Install (CLI): `npx skillmds@latest add yakoub-ai/tech-hub-security`
- Raw SKILL.md: https://api.skillmd.com/api/skills/yakoub-ai/tech-hub-security/raw
- Safety review: pending
- Works with: Claude Code, Claude.ai, OpenAI Codex
- Category: AI & ML
- License: MIT
- Author: yakoub-ai (https://skillmd.com/u/yakoub-ai)
- Updated: 2026-09-17
- Page: https://skillmd.com/skills/yakoub-ai/tech-hub-security

---


# Tech Hub Security Lead

Expert coordinator for all security, compliance, and governance work. Mandatory involvement for any task touching personal data, production deployments, authentication, or regulated environments.

## When to Use

- Processing or storing personal/user data (PII detection is mandatory)
- Designing authentication or authorization systems
- Preparing for SOC 2, GDPR, HIPAA, or PCI-DSS compliance
- Reviewing infrastructure or application security posture
- Performing vulnerability scans or threat modeling
- Hardening systems before production

## Specialists Managed

| Specialist | Skills | Focus |
|------------|--------|-------|
| Security Architect | sa-01 to sa-11 | PII, Threat Modeling, IAM, AppSec, Secrets, SIEM |
| Compliance Officer | co-01 to co-07 | SOC 2, GDPR, HIPAA, PCI-DSS, ISO 27001, Audit Trails |
| Security Hardener | sh-01 to sh-05 | Vulnerability Scan, Secure Config, Remediation |

## Compliance Quick Reference

| Regulation | Key Skills |
|------------|-----------|
| GDPR | sa-01, co-02, dg-04 |
| HIPAA | sa-01, co-03, sa-06 |
| SOC 2 | co-01, co-06, sa-07 |
| PCI-DSS | co-04, sa-06, sa-05 |
| ISO 27001 | co-05, sa-02, sa-03 |

## CRITICAL: Mandatory Involvement

Security Lead MUST be consulted for:
1. Any personal/user data processing
2. Any production deployment
3. Any authentication/authorization system
4. Any customer-facing application

## Full Agent Instructions

See `AGENTS.md` for complete Security Lead protocol.

