Google Cloud Security Architecture Advisor
Cloud / InfraEvaluates a cloud workload against the security pillar of the Google Cloud Well-Architected Framework and produces a security guidance report with a maturity scorecard, prioritized actions, and executable code.
Live output preview
A plan is required to view this content
Choose a plan to access input format, sample outputs, and live previews.
View Plans →About the skill
Google Cloud Security Architecture Advisor
This skill evaluates a cloud workload based on the Security pillar of the Google Cloud Well-Architected Framework (WAF) and produces actionable security recommendations. It analyzes the workload across seven core principles: security by design, zero trust, shift-left, preventive cyber defense, AI security, and compliance/privacy.
What it does? It identifies the IAM, network security, data protection, and operational security requirements of your workload; scores each principle on a 0-4 maturity scale; and produces a prioritized action list and a verification checklist. It provides concrete mappings to relevant Google Cloud products such as Cloud Armor, VPC Service Controls, Binary Authorization, Cloud KMS, IAP, Security Command Center, and Google SecOps.
When to use it? When auditing a new architecture in the design phase, when preparing a production workload for a PCI-DSS / KVKK / ISO 27001 audit, when prioritizing security vulnerabilities, or when you want to measure the security maturity of an existing setup.
Output: A structured Markdown report containing a maturity scorecard (table), prioritized actions, executable gcloud / Terraform / YAML code blocks, and a verification checklist. The report relates findings to real Google Cloud products and features, offering guidance that architecture teams can apply immediately.
How do I use this skill?
Upload the google-cloud-waf-security.zip you downloaded as-is — no packaging needed, the format is already correct (folder at root).
- Open Settings → Customize → Skills
- Upload → select the
google-cloud-waf-security.zipyou downloaded - Claude reads
SKILL.md; the name + description appear. Ready ✅
Scripts run in Anthropic's code-execution environment (sandbox) — not on your machine.