MCP 서버

cybershield

io.tooloracle/cybershield
법률 및 컴플라이언스 보안 공개 · 연결 가능 MCP 2026-07-28

이 MCP로 할 수 있는 일

Provides cybersecurity assessments, vulnerability prioritization, phishing analysis, incident playbooks, threat intelligence, and ISO, NIS2, and DORA compliance checks.

attack_surface_check
Attack surface assessment checklist. Web apps, remote access, cloud, IoT, email. Prioritized security checks.
입력 스키마
{'type': 'object', 'properties': {'iot_devices': {'type': 'boolean'}, 'cloud_services': {'type': 'boolean'}, 'employee_count': {'type': 'integer'}, 'web_applications': {'type': 'boolean'}, 'remote_access_vpn': {'type': 'boolean'}}, 'additionalProperties': False}
cve_risk_score
CVE risk prioritization combining CVSS, EPSS, KEV catalog, exploit availability. Returns weighted priority score with patching SLA.
입력 스키마
{'type': 'object', 'properties': {'cve_id': {'type': 'string'}, 'cvss_score': {'type': 'number'}, 'epss_score': {'type': 'number', 'description': '0-1 EPSS probability'}, 'in_kev_catalog': {'type': 'boolean'}, 'public_exploit': {'type': 'boolean'}, 'internet_facing': {'type': 'boolean'}, 'affected_systems': {'type': 'integer'}}, 'additionalProperties': False}
dora_ict_risk
DORA Art. 5-12 ICT risk management compliance check. 8 articles assessed with specific requirements per article.
입력 스키마
{'type': 'object', 'properties': {'learning_evolving': {'type': 'boolean'}, 'response_recovery': {'type': 'boolean'}, 'detection_measures': {'type': 'boolean'}, 'ict_risk_framework': {'type': 'boolean'}, 'communication_plans': {'type': 'boolean'}, 'ict_asset_inventory': {'type': 'boolean'}, 'protection_prevention': {'type': 'boolean'}}, 'additionalProperties': False}
incident_playbook
Incident response playbook for ransomware, data breach, phishing compromise. Phase-by-phase actions with legal obligations.
입력 스키마
{'type': 'object', 'properties': {'incident_type': {'type': 'string', 'description': 'ransomware | data_breach | phishing_compromise'}}, 'additionalProperties': False}
iso27001_gap
ISO 27001:2022 Annex A gap analysis. All 93 controls across 4 themes, new 2022 controls highlighted, certification process.
입력 스키마
{'type': 'object', 'properties': {'controls': {'type': 'object', 'description': 'Optional: status of specific controls'}}, 'additionalProperties': False}
nis2_compliance
NIS2 Directive (EU 2022/2555) compliance assessment. All 10 Art. 21 measures, entity classification, penalties, incident reporting.
입력 스키마
{'type': 'object', 'properties': {'sector': {'type': 'string'}, 'mfa_deployed': {'type': 'boolean'}, 'access_control': {'type': 'boolean'}, 'employee_count': {'type': 'integer'}, 'risk_management': {'type': 'boolean'}, 'incident_handling': {'type': 'boolean'}, 'business_continuity': {'type': 'boolean'}, 'cryptography_policy': {'type': 'boolean'}, 'annual_turnover_meur': {'type': 'number'}, 'supply_chain_security': {'type': 'boolean'}, 'cyber_hygiene_training': {'type': 'boolean'}, 'vulnerability_management': {'type': 'boolean'}, 'incident_reporting_process': {'type': 'boolean'}}, 'additionalProperties': False}
nis2_incident_report
NIS2 incident notification template. 24h early warning, 72h notification, 1-month final report templates.
입력 스키마
{'type': 'object', 'properties': {'severity': {'type': 'string'}, 'incident_type': {'type': 'string'}, 'affected_services': {'type': 'string'}, 'cross_border_impact': {'type': 'boolean'}, 'affected_users_estimate': {'type': 'integer'}}, 'additionalProperties': False}
password_policy
Generate password policy per NIST SP 800-63B (2024) and BSI recommendations. Modern best practices — no forced rotation.
입력 스키마
{'type': 'object', 'properties': {}, 'additionalProperties': False}
phishing_indicators
Analyze email/URL for phishing indicators. Scores sender, urgency, attachments, URL patterns. Returns verdict and recommended actions.
입력 스키마
{'type': 'object', 'properties': {'subject': {'type': 'string'}, 'sender_email': {'type': 'string'}, 'suspicious_url': {'type': 'string'}, 'creates_urgency': {'type': 'boolean'}, 'asks_for_credentials': {'type': 'boolean'}, 'has_unexpected_attachment': {'type': 'boolean'}}, 'additionalProperties': False}
risk_matrix
Risk assessment matrix (likelihood × impact). ISO 31000/27005 methodology. Provide risks for assessment or get template.
입력 스키마
{'type': 'object', 'properties': {'risks': {'type': 'string', 'description': 'JSON array [{name, likelihood(1-5), impact(1-5)}]'}}, 'additionalProperties': False}
security_metrics
Security KPI/metrics dashboard template. MTTD, MTTR, patch compliance, phishing rate. Board-ready reporting guidance.
입력 스키마
{'type': 'object', 'properties': {}, 'additionalProperties': False}
threat_landscape
Current cyber threat landscape overview per ENISA categories. Top 8 threats with sector relevance and mitigations.
입력 스키마
{'type': 'object', 'properties': {'sector': {'type': 'string', 'description': 'energy|finance|healthcare|manufacturing|public_admin|general'}}, 'additionalProperties': False}
추가됨
security_metrics
2026년 9월 17일 12:53 PM
추가됨
risk_matrix
2026년 9월 17일 12:53 PM
추가됨
incident_playbook
2026년 9월 17일 12:53 PM
추가됨
password_policy
2026년 9월 17일 12:53 PM
추가됨
dora_ict_risk
2026년 9월 17일 12:53 PM
추가됨
iso27001_gap
2026년 9월 17일 12:53 PM
추가됨
nis2_incident_report
2026년 9월 17일 12:53 PM
추가됨
nis2_compliance
2026년 9월 17일 12:53 PM
추가됨
phishing_indicators
2026년 9월 17일 12:53 PM
추가됨
attack_surface_check
2026년 9월 17일 12:53 PM
추가됨
cve_risk_score
2026년 9월 17일 12:53 PM
추가됨
threat_landscape
2026년 9월 17일 12:53 PM