Catalyst is a SOAR (Security Orchestration, Automation and Response) system that helps to automate alert handling and incident response processes. It adapts to your processes and workflows, and is open source, allowing for free use and contribution to the project. With Catalyst, you can automate alerts and incidents, focusing on important tasks or relaxing a little. Features include flexible ticket types, conditional custom fields, statuses, and playbooks that fit your needs.
FEATURES
SIMILAR TOOLS
Automated Digital Forensics and Incident Response (DFIR) software for rapid incident response and intrusion investigations.
RedEye is a visual analytic tool that provides enhanced situational awareness and operational insights for both Red and Blue Team cybersecurity operations.
A repository of sample security playbooks with ARM templates for Microsoft Sentinel that enable automated security orchestration and response capabilities.
Shuffle Automation provides an open-source platform for security orchestration, automation, and response.
StackStorm is an open-source automation platform that connects and automates DevOps workflows and integrates with existing infrastructure.
Fast Intercept is a security automation platform that empowers users to maximize their existing security products and automate routine tasks.
Incident response and case management solution for efficient incident response and management.
An open-source, drag-and-drop security workflow builder with integrated case management for automating security workflows and tackling alert fatigue.
A community repository of workflow templates for the Ayehu NG platform that enables automated IT and business process execution.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.