content
Demisto is now Cortex XSOAR. Automate and orchestrate your Security Operations with Cortex XSOAR's ever-growing Content Repository. Pull Requests are always welcome and highly appreciated! (by demisto)
Awesome-SOAR
A curated Cyber "Security Orchestration, Automation and Response (SOAR)" awesome list. (by correlatedsecurity)
content | Awesome-SOAR | |
---|---|---|
4 | 3 | |
1,072 | 736 | |
1.5% | - | |
10.0 | 0.0 | |
about 21 hours ago | about 2 months ago | |
Python | ||
MIT License | - |
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
content
Posts with mentions or reviews of content.
We have used some of these posts to build our list of alternatives
and similar projects. The last one was on 2022-08-01.
Awesome-SOAR
Posts with mentions or reviews of Awesome-SOAR.
We have used some of these posts to build our list of alternatives
and similar projects. The last one was on 2023-05-31.
-
Seeking Automation Inspiration for SOC/Blue Teams
Slightly dated, but Jurgen V compiled a nice collection of best practices to get you started: https://github.com/correlatedsecurity/Awesome-SOAR
-
SOAR Questions
The above strongly ties into Q7 - don't get me wrong, SOAR tools are fun to play with and easy to get excited about - but I have seen so many failed implementations out there, with SOAR only adding another shiny tool-based layer of complexity - as opposed to generating the originally intended opposite effect. Let's take a step back here: some details on your org, infra, tooling, team size and challenges are the place to start. You might have already seen it, but Jurgen V compiled a nice list of basics and vendor reviews at https://github.com/correlatedsecurity/Awesome-SOAR
- Cyber Playbooks
What are some alternatives?
When comparing content and Awesome-SOAR you can also consider the following projects:
Incident-Playbook - GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]
remark-wiki-link - Parse and render wiki links.
playbooks
react-native - A framework for building native applications using React
playbooks - Phantom Community Playbooks
notes - Collection of my byte sized notes on programming and other random topics.
MkDocs - Project documentation with Markdown.
ionic-docs
obsidian-git - Backup your Obsidian.md vault with git
incident-response-playbooks - Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents
swc - Rust-based platform for the Web