Skip to content

GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]

License

Notifications You must be signed in to change notification settings

aboutsecurity/Incident-Playbook

 
 

Repository files navigation

Join the chat at https://gitter.im/Incident-Playbook/community

If you have an idea for the project please start a discusssion.

PURPOSE OF PROJECT

That this project will be created by the SOC/Incident Response Community

  • Develop a Catalog of Incident Response Playbook for every MITRE Technique (Keep in mind it won't work for some tactics).
  • Develop a Catalog of Incident Response Playbook for uncommon incidents.
  • Develop a Catalog of Exercise Scenarios that can be used for training purposes.
  • Develop a Catalog of tools used for Incident Response [Plus Reviews for the different tools].
  • Develop a Catalog of Incident Response Automations.
  • Develop a Catalog of Checklists [For Before, During, After Incidents].
  • Develop a Catalog of Roles that a organization can use, to build their own program.
  • Develop a Catalog of Event Codes and API Actions that you can/will see in a SIEM Detections.
  • Develop a Card Game based on MITRE Attack and the IR phases that help resolve it.
  • Develop a Battle Card Book, that can be reference for immediate help during a incident.

For every pull request submitted a issue must also be created.

Immediate Goals/Projects

Wiki

Contributors

Planning on Adding Photos later

About

GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages

  • Python 66.4%
  • Scala 11.0%
  • HTML 7.4%
  • TypeScript 7.3%
  • JavaScript 4.2%
  • Jupyter Notebook 0.9%
  • Other 2.8%