Hack23
@Hack23 Organization
Public Skills
access-control-policy
by Hack23
Identity and access management: RBAC, least privilege, MFA, quarterly reviews per ISO 27001 A.5.15, A.8.2, A.8.3
backup-recovery-policy
by Hack23
Business continuity and disaster recovery: 30-day retention, quarterly restore tests, RTO/RPO targets per ISO 27001 A.17
behavioral-analysis
by Hack23
Political psychology, cognitive biases, group dynamics, leadership analysis, decision-making patterns for Swedish political intelligence
classification-policy
by Hack23
Risk-based data and asset classification framework: PUBLIC, INTERNAL, CONFIDENTIAL, RESTRICTED aligned with ISO 27001 A.5.12 and CIA triad
compliance-checklist
by Hack23
Unified compliance verification across ISO 27001, NIST CSF, CIS Controls, NIS2, EU CRA, GDPR, SOC 2, PCI DSS, and HIPAA for cybersecurity consulting
cryptography-policy
by Hack23
Cryptographic controls implementation: TLS 1.3, AES-256-GCM, bcrypt, RSA-4096, key management per NIST FIPS 140-2 and ISO 27001 A.8.24
incident-response
by Hack23
Security incident detection, analysis, containment, eradication, recovery, and lessons learned per NIST SP 800-61r2 and ISO 27035
information-security-strategy
by Hack23
AI-enabled security excellence through transparent ISMS implementation, defense-in-depth, and strategic planning aligned with Hack23 business model
intelligence-analysis-techniques
by Hack23
Structured analytic techniques including ACH, SWOT, Devil's Advocacy, Red Team analysis for political intelligence
legislative-monitoring
by Hack23
Voting pattern analysis, committee effectiveness, bill tracking, parliamentary oversight for Swedish intelligence operations
open-source-policy
by Hack23
Open source governance, security posture badges, license compliance, SBOM generation, and vulnerability management for transparency-driven development
osint-methodologies
by Hack23
OSINT collection, source evaluation, data integration, verification techniques for Swedish political intelligence
risk-assessment-frameworks
by Hack23
Political risk indicators, institutional risk, corruption risk, democratic backsliding, early warning systems for Swedish political intelligence
risk-assessment-methodology
by Hack23
Systematic risk identification, analysis, evaluation, and treatment aligned with ISO 27005, NIST RMF, and Hack23 ISMS risk register
strategic-communication-analysis
by Hack23
Narrative framing, media analysis, discourse analysis, influence assessment, information warfare detection for Swedish political intelligence
swedish-political-system
by Hack23
Swedish Riksdag structure, 8 parties, electoral system, government formation, coalition patterns, political culture
vulnerability-management
by Hack23
Systematic vulnerability lifecycle management with SLAs: Critical 7d, High 30d, Medium 90d, Low 180d aligned with OWASP, NIST, CIS Controls
hack23-information-security-policy
by Hack23
Hack23 Information Security Policy integration for SDLC — developer-facing mapping of ISP requirements to daily engineering activities, tooling, and evidence
github-actions-workflows
by Hack23
Create secure CI/CD workflows with GitHub Actions for Java 26/Maven/PostgreSQL builds, security scans, and deployments
github-agentic-workflows
by Hack23
Master GitHub Agentic Workflows (gh-aw) - AI-powered repository automation with safe outputs, sandboxed execution, and multi-engine support
integration-testing
by Hack23
Implement Spring Framework integration tests with TestContainers, Spring Test, and database fixtures
advanced-data-visualization
by Hack23
Advanced chart types, D3.js/Vaadin Charts patterns, political data visualization, time series analysis
ai-governance
by Hack23
AI governance, EU AI Act compliance, OWASP LLM security, responsible AI practices for GitHub Copilot agents
api-integration
by Hack23
External API integration patterns, retry logic, circuit breakers, caching, rate limiting for government data APIs
aws-security-architecture
by Hack23
AWS security best practices, VPC security, IAM, KMS, CloudTrail, GuardDuty for CIA platform deployment
ci-cd-security
by Hack23
CI/CD pipeline security, supply chain security, SLSA compliance, artifact signing, dependency scanning
cia-data-integration
by Hack23
Citizen Intelligence Agency data model integration, riksdag data processing, political entity mapping
classification-framework-enforcement
by Hack23
Data classification enforcement, sensitivity labeling, and handling controls per classification level for the CIA platform
compliance-framework-alignment
by Hack23
Cross-framework compliance alignment and control mapping between ISO 27001, NIST CSF, CIS Controls, and GDPR
compliance-frameworks
by Hack23
Multi-framework compliance (ISO 27001, NIST CSF, CIS Controls, GDPR, NIS2, EU CRA, SOC 2), control mapping
data-pipeline-engineering
by Hack23
Data pipeline design, ETL processes, Spring Integration patterns, batch processing for political data
data-protection
by Hack23
Data classification (CIA triad), GDPR privacy by design, encryption standards, data lifecycle management
hack23-isms-compliance
by Hack23
Hack23 ISMS organization-wide compliance requirements, policy enforcement, audit preparation
european-parliament-api
by Hack23
EU Parliament open data API integration, MEP data, voting records, committee data for cross-parliament analysis
hack23-future-architecture-standards
by Hack23
Hack23 organization architecture documentation standards, C4 model requirements, future state planning
mcp-gateway-configuration
by Hack23
MCP gateway setup for multi-server integration, security configuration, tool routing, and access control
mcp-gateway-security
by Hack23
MCP gateway security patterns, token management, request validation, and audit logging for MCP communications
mcp-server-development
by Hack23
Model Context Protocol server development, MCP tool patterns, MCP configuration best practices, GitHub MCP integration
performance-optimization
by Hack23
Application performance tuning, JVM optimization, database query tuning, Vaadin UI performance
product-quality-analysis
by Hack23
Product quality metrics, SonarCloud analysis, technical debt management, code quality gates
secure-development-lifecycle
by Hack23
Secure SDLC phases, security requirements, secure coding practices, and security testing integration for the CIA platform
secure-development-policy
by Hack23
Hack23 secure development policy enforcement, SAST/DAST integration, dependency scanning, and code signing practices
security-architecture-validation
by Hack23
Security architecture review, control validation, penetration testing guidance, and compliance verification for the CIA platform
security-by-design
by Hack23
Threat modeling before coding, STRIDE methodology, defense in depth, security controls in SDLC
testing-strategy-enforcement
by Hack23
Test strategy governance, coverage enforcement (80% line, 70% branch), test pyramid adherence, and CI gate enforcement
typescript-strict-patterns
by Hack23
TypeScript strict mode, type safety, readonly patterns, type guards for frontend tooling used in CI/CD
ui-ux-design-system
by Hack23
Design system management, Vaadin component library patterns, consistent UI/UX, accessibility integration
change-management
by Hack23
Secure change control: RFC process, testing requirements, rollback procedures per ISO 27001 A.8.9, A.8.32
cis-controls
by Hack23
Implement CIS Controls v8 critical security controls for effective cyber defense in CIA platform
crypto-best-practices
by Hack23
Implement strong encryption, secure hashing, and proper key management following NIST and OWASP cryptography guidelines
iso-27001-controls
by Hack23
Verify implementation of ISO 27001:2022 information security controls across CIA platform development and operations
gdpr-compliance
by Hack23
Ensure GDPR compliance for personal data processing in CIA platform with privacy-by-design principles
input-validation
by Hack23
Implement comprehensive input validation to prevent XSS, SQL injection, and command injection attacks with sanitization strategies
nist-csf-mapping
by Hack23
Map CIA platform security controls to NIST Cybersecurity Framework functions: Identify, Protect, Detect, Respond, Recover
secrets-management
by Hack23
Never commit secrets, manage credentials securely using environment variables, vaults, and Hack23 ISMS key management policy
secure-code-review
by Hack23
Conduct comprehensive security code reviews using OWASP Top 10, SAST/DAST patterns, and Hack23 ISMS secure development policy
security-documentation
by Hack23
Maintain comprehensive security documentation including SECURITY_ARCHITECTURE.md, THREAT_MODEL.md per Hack23 ISMS standards
threat-modeling
by Hack23
Conduct systematic threat modeling using STRIDE framework, attack trees, and security architecture analysis for CIA platform
accessibility-wcag-patterns
by Hack23
WCAG 2.1 AA compliance, ARIA attributes, keyboard navigation, screen reader optimization for accessible political data platforms
aws-cloudwatch-monitoring
by Hack23
AWS CloudWatch metrics, alarms, dashboards, log insights, and application monitoring for the CIA platform
business-model-canvas
by Hack23
Business Model Canvas framework for value proposition, customer segments, revenue streams, and sustainable business model design
data-visualization-principles
by Hack23
Chart selection, color theory, dashboard design, and data storytelling principles for political transparency data
playwright-ui-testing
by Hack23
Playwright browser automation, visual regression testing, accessibility testing, and E2E workflow validation for CIA platform
product-management-patterns
by Hack23
Product backlog management, user stories, acceptance criteria, sprint planning, and stakeholder management for agile development
seo-best-practices
by Hack23
On-page SEO, technical SEO, keyword research, and content optimization for political transparency platforms
data-science-for-intelligence
by Hack23
Statistical analysis, ML, NLP, time series forecasting, network analysis for political intelligence data
electoral-analysis
by Hack23
Election forecasting models, campaign analysis, coalition prediction, voter behavior analysis for Swedish elections
political-science-analysis
by Hack23
Apply comparative politics, political behavior, public policy analysis, and democratic theory frameworks to Swedish political data
c4-architecture-documentation
by Hack23
Document system architecture using C4 model: context, container, component, code diagrams per ARCHITECTURE.md
code-quality-checks
by Hack23
Enforce code quality with SonarCloud, CheckStyle, SpotBugs, and maintain quality gates
contribution-guidelines
by Hack23
Follow CIA project contribution process: PR workflow, code review standards, commit conventions
documentation-standards
by Hack23
Write clear technical documentation: Markdown best practices, diagrams, API docs per DOCUMENTATION_NAMING_CONVENTION.md
e2e-testing
by Hack23
Implement end-to-end testing with Selenium, Playwright for CIA platform UI and workflow validation
issue-triage-workflow
by Hack23
Triage GitHub issues: labeling, prioritization, assignment, and resolution tracking
jpa-hibernate-optimization
by Hack23
Optimize JPA/Hibernate: entity design, query performance, N+1 prevention, caching strategies
maven-build-management
by Hack23
Manage multi-module Maven builds: dependencies, plugins, profiles, reproducible builds
postgresql-operations
by Hack23
Manage PostgreSQL: schema migrations, performance tuning, backups, monitoring per README-SCHEMA-MAINTENANCE.md
spring-framework-patterns
by Hack23
Apply Spring Framework best practices: dependency injection, transaction management, AOP for CIA services
unit-testing-patterns
by Hack23
Implement JUnit 5, Mockito, and AssertJ patterns with 80%+ code coverage for CIA platform unit tests
vaadin-component-design
by Hack23
Design Vaadin UI components with proper lifecycle, data binding, and responsive layouts for CIA platform