From jeremylongshore-claude-code-plugins-plus-skills
Generates SIEM rules and configurations for security monitoring, detection, and compliance frameworks. Useful for threat modeling, pentesting, and enterprise security tasks.
npx claudepluginhub jeremylongshore/claude-code-plugins-plus-skills --plugin langchain-py-packThis skill is limited to using the following tools:
This skill provides automated assistance for siem rule generator tasks within the Security Advanced domain.
Creates, validates, converts Sigma detection rules for SIEM platforms including Splunk, Elastic, QRadar, Sentinel. Supports threat hunting, MITRE ATT&CK mapping, detection-as-code, and compliance monitoring.
Builds vendor-agnostic Sigma detection rules for SIEMs like Splunk, Elastic, Sentinel from threat intel or MITRE ATT&CK. Converts rules to platform queries using pySigma or sigmac.
Builds portable Sigma detection rules for SIEMs like Splunk, Elastic, Sentinel from threat intel, MITRE ATT&CK mapping, or community rules using pySigma backends.
Share bugs, ideas, or general feedback.
This skill provides automated assistance for siem rule generator tasks within the Security Advanced domain.
This skill activates automatically when you:
Example: Basic Usage Request: "Help me with siem rule generator" Result: Provides step-by-step guidance and generates appropriate configurations
| Error | Cause | Solution |
|---|---|---|
| Configuration invalid | Missing required fields | Check documentation for required parameters |
| Tool not found | Dependency not installed | Install required tools per prerequisites |
| Permission denied | Insufficient access | Verify credentials and permissions |
Part of the Security Advanced skill category. Tags: pentesting, compliance, soc2, gdpr, threat-modeling