- Retirement income & withdrawal strategy
- Tax: Roth/RRSP, loss harvesting, rule changes
- Estate, insurance & cross-border planning
- Advisor tools: meeting prep, compliance pre-screen
21,500+ skills & agents. Every one governed.
5,814 pre-built agents and 15,654 library skills across 24 industries and 12 roles per industry — installable from the catalog, connected to your systems, and run through the same fail-closed gate chain as everything else on Cortex.
21,511 governed library items · counted live from the catalog, not a marketing number
Start from a curated collection.
Hand-built suites for the jobs enterprises automate first — every collection ships governed, with policies and audit built in.
- Service, Sales & Customer Success
- IT Service Desk, HR & Finance Ops
- Legal Intake, Procurement & Field Ops
- Risk & Compliance
- Inbox triage & email drafting
- Meeting prep, notes & follow-up
- Smart scheduling & daily brief
- Executive assistant orchestration
- Smart claims, actuarial & AML
- Audit, GRC & ESG reporting
- ITAM / ITSM & security operations
- Data & analytics workbenches
Find the skill your team needs.
Search 21,500+ governed skills and agents, or filter by industry and type — every result installs from the catalog and runs through the same gates.
864 results · Cybersecurity
Check supplied context against policy — Identity & Access Analyst, Cybersecurity
Check supplied context against policy for Identity & Access Analyst teams in Cybersecurity, delivered by the Compliance Checker pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Surface potential policy issues — Identity & Access Analyst, Cybersecurity
Surface potential policy issues for Identity & Access Analyst teams in Cybersecurity, delivered by the Compliance Checker pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Recommend review items — Identity & Access Analyst, Cybersecurity
Recommend review items for Identity & Access Analyst teams in Cybersecurity, delivered by the Compliance Checker pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Assess supplied risk context — Identity & Access Analyst, Cybersecurity
Assess supplied risk context for Identity & Access Analyst teams in Cybersecurity, delivered by the Risk Assessment pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Explain assessment drivers — Identity & Access Analyst, Cybersecurity
Explain assessment drivers for Identity & Access Analyst teams in Cybersecurity, delivered by the Risk Assessment pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Recommend human review — Identity & Access Analyst, Cybersecurity
Recommend human review for Identity & Access Analyst teams in Cybersecurity, delivered by the Risk Assessment pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Query supplied record data — Identity & Access Analyst, Cybersecurity
Query supplied record data for Identity & Access Analyst teams in Cybersecurity, delivered by the Reconciliation Brief pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Summarize potential discrepancies — Identity & Access Analyst, Cybersecurity
Summarize potential discrepancies for Identity & Access Analyst teams in Cybersecurity, delivered by the Reconciliation Brief pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Prepare a reconciliation brief — Identity & Access Analyst, Cybersecurity
Prepare a reconciliation brief for Identity & Access Analyst teams in Cybersecurity, delivered by the Reconciliation Brief pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Assess a supplied exception — Identity & Access Analyst, Cybersecurity
Assess a supplied exception for Identity & Access Analyst teams in Cybersecurity, delivered by the Exception Review pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Summarize the assessment — Identity & Access Analyst, Cybersecurity
Summarize the assessment for Identity & Access Analyst teams in Cybersecurity, delivered by the Exception Review pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Recommend follow-up review — Identity & Access Analyst, Cybersecurity
Recommend follow-up review for Identity & Access Analyst teams in Cybersecurity, delivered by the Exception Review pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Run an on-demand read query — Identity & Access Analyst, Cybersecurity
Run an on-demand read query for Identity & Access Analyst teams in Cybersecurity, delivered by the On-demand Reporting & Insights pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Summarize query results — Identity & Access Analyst, Cybersecurity
Summarize query results for Identity & Access Analyst teams in Cybersecurity, delivered by the On-demand Reporting & Insights pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Highlight supplied exceptions — Identity & Access Analyst, Cybersecurity
Highlight supplied exceptions for Identity & Access Analyst teams in Cybersecurity, delivered by the On-demand Reporting & Insights pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Assess supplied context — Identity & Access Analyst, Cybersecurity
Assess supplied context for Identity & Access Analyst teams in Cybersecurity, delivered by the Decision Support pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Draft a recommended response — Identity & Access Analyst, Cybersecurity
Draft a recommended response for Identity & Access Analyst teams in Cybersecurity, delivered by the Decision Support pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Prepare rationale for review — Identity & Access Analyst, Cybersecurity
Prepare rationale for review for Identity & Access Analyst teams in Cybersecurity, delivered by the Decision Support pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Summarize supplied work — Identity & Access Analyst, Cybersecurity
Summarize supplied work for Identity & Access Analyst teams in Cybersecurity, delivered by the Routing Advisor pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Assess priority and risk — Identity & Access Analyst, Cybersecurity
Assess priority and risk for Identity & Access Analyst teams in Cybersecurity, delivered by the Routing Advisor pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Recommend a routing decision — Identity & Access Analyst, Cybersecurity
Recommend a routing decision for Identity & Access Analyst teams in Cybersecurity, delivered by the Routing Advisor pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Query supplied historical data — Identity & Access Analyst, Cybersecurity
Query supplied historical data for Identity & Access Analyst teams in Cybersecurity, delivered by the Trend Briefing pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Summarize observed trends — Identity & Access Analyst, Cybersecurity
Summarize observed trends for Identity & Access Analyst teams in Cybersecurity, delivered by the Trend Briefing pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Prepare questions for forecast review — Identity & Access Analyst, Cybersecurity
Prepare questions for forecast review for Identity & Access Analyst teams in Cybersecurity, delivered by the Trend Briefing pattern from supplied context. Splunk and CrowdStrike are possible integration contexts that must be configured separately. Runs governed by policy, budgets, and the audit ledger.
Install is the easy part. Governance comes with it.
Library agents aren't scripts — they're governed identities. Installing one registers it with an owner, a budget, allowed models and actions, and a place in the audit ledger.
Choose from the catalog
Filter by your industry and role; every item lists the systems it connects to and the skills it invokes.
Wire it to your stack
Connectors, MCP servers, and OpenAPI imports — scoped by allowlists and DLP at the gateway.
Every run through the gates
Identity, budget, guardrails, policy, oversight — then a signed receipt in the Trust Ledger. On every plan.
Don't see the skill you need?
The visual skill builder ships new skills without code — or tell us what's missing and we'll point you at the closest governed pattern.