The Catalyst Handbook (Documentation) - Try online Catalyst is an incident response platform or SOAR (Security Orchestration, Automation and Response) system that helps automate alert handling and incident response procedures. Features include Ticket (Alert & Incident) Management, Ticket Templates, Conditional Custom Fields, and Playbooks.
FEATURES
SIMILAR TOOLS
Open-source, free, and scalable cyber threat intelligence and security incident response solution with improved performance and new features.
Incident response framework focused on remote live forensics
A compilation of suggested tools for each component in a detection and response pipeline, with real-world examples, to design effective threat detection and response pipelines.
A project that uses Athena and EventBridge to investigate API activity and notify of actions for incident response and misconfiguration detection.
A cybersecurity incident management platform for tracking and reporting incidents with agility and speed.
A report on detecting lateral movement through tracking event logs, updated to include analysis of various tools and commands used by attackers.
A modular incident response framework in Powershell that uses Powershell Remoting to collect data for incident response and breach hunts.
StackStorm is an open-source automation platform that connects and automates DevOps workflows and integrates with existing infrastructure.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.