CybersecTools API access is now live!Learn More

Security Operations

Security operations tools for SIEM, SOAR, threat hunting, incident response, and security operations center (SOC) management.

Browse 2,126 security operations tools

FourCore ATTACK is an adversary emulation platform to manage cyber risk with evidence

HexPrism is a fast, privacy-first hex editor built for CTFs and digital forensics.

Real-time crash monitoring with heuristics to distinguish bugs from attacks

Detection engineering control plane with CI/CD for SIEM, XDR, and data lakes

SOAR platform for automated alert triage, investigation, and response

AI-powered security platform for natural language queries across petabytes of data

SIEM platform with native threat intel, AI analytics, and Security Data Lake

Integrated SIEM, SOAR, NDR platform with central fleet management capabilities

Searchable repository of Sigma detection rules for threat hunting and SIEM

AI-powered deception platform using honeypots to detect & disrupt attacks

Centralized management platform for Endian security infrastructure lifecycle

An open-source framework that enables building and deploying AI-powered security automation tools for both offensive and defensive cybersecurity operations using over 300 AI models.

Red Hand Analyzer is an online tool that provides automated behavioral analysis of PCAP files to detect malicious network activities and security vulnerabilities without decrypting traffic content.

An open-source incident response case management tool that provides visualization, threat intelligence lookups, and security framework mapping in a unified workspace.

A centralized management console for efficiently operating and monitoring large-scale, multitenant Logpoint SIEM deployments across customers, geographies, and organizational divisions.

A security information and event management solution that collects, normalizes, and analyzes log data from across an organization's infrastructure to enhance threat detection and compliance reporting.

SOC management platform for incident response and cyber response management

AI-powered SOC platform for automated alert triage, incident response & logging

A vendor-agnostic product for managing and analyzing cybersecurity playbooks.

Cloud-native deception platform deploying dynamic security canaries

A forensic analysis tool that extracts and parses logs, notifications, and system information from iOS/iPadOS devices and backups.

A proof-of-concept Node.js tool that demonstrates automated MFA bypass techniques for Microsoft Outlook accounts using browser automation.

A low-interaction honeypot that simulates network services to detect and monitor potential intrusion attempts on internal networks.

Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.

Security Operations Tools - FAQ

Common questions about Security Operations tools including selection guides, pricing, and comparisons.

Security operations tools for SIEM, SOAR, threat hunting, incident response, and security operations center (SOC) management.

Have more questions? Browse our categories or search for specific tools.