Back to skills
SkillHub ClubRun DevOpsFull StackSecurity

incident-response

Comprehensive incident response skill for security incident detection, containment, investigation, and recovery. Includes alert triage, severity classification, evidence collection, root cause analysis, and post-incident documentation with automated playbook execution.

Packaged view

This page reorganizes the original catalog entry around fit, installability, and workflow context first. The original raw source lives below.

Stars
11
Hot score
85
Updated
March 20, 2026
Overall rating
C2.4
Composite score
2.4
Best-practice grade
C62.3

Install command

npx @skill-hub/cli install rickydwilson-dcs-claude-skills-incident-response
incident-responsesecurityforensicscontainmentinvestigationMTTDMTTRplaybookSOCengineeringservicenowitsm

Repository

rickydwilson-dcs/claude-skills

Skill path: skills/engineering-team/incident-response

Comprehensive incident response skill for security incident detection, containment, investigation, and recovery. Includes alert triage, severity classification, evidence collection, root cause analysis, and post-incident documentation with automated playbook execution.

Open repository

Best for

Primary workflow: Run DevOps.

Technical facets: Full Stack, Security.

Target audience: Development teams looking for install-ready agent workflows..

License: Unknown.

Original source

Catalog source: SkillHub Club.

Repository owner: rickydwilson-dcs.

This is still a mirrored public skill entry. Review the repository before installing into production workflows.

What it helps with

  • Install incident-response into Claude Code, Codex CLI, Gemini CLI, or OpenCode workflows
  • Review https://github.com/rickydwilson-dcs/claude-skills before adding incident-response to shared team environments
  • Use incident-response for development workflows

Works across

Claude CodeCodex CLIGemini CLIOpenCode

Favorites: 0.

Sub-skills: 0.

Aggregator: No.

incident-response | SkillHub