Request Tracker for Incident Response (RTIR) is a tool designed for incident response teams, providing pre-configured queues and workflows to manage incident reports, correlate key data, and facilitate communication among multiple parties. It offers features such as incident handling workflow, separate queues, customizable email templating, and integration with external systems. RTIR provides a dedicated incident dashboard, custom fields, and search functionality to track incident data. It also includes tools for network lookups, identification, and reporting. The tool is compatible with Request Tracker extensions and offers scripted actions for bulk ticket creation. RTIR is used by many CERT and CSIRT teams worldwide and offers a free trial.
FEATURES
ALTERNATIVES
A report on detecting lateral movement through tracking event logs, updated to include analysis of various tools and commands used by attackers.
Catalyst is a SOAR system that automates alert handling and incident response processes, adapting to your workflows and being open source.
A framework for accumulating, describing, and classifying actionable Incident Response techniques
Cortex XSOAR is a comprehensive SOAR platform that automates and standardizes security processes for faster response times and increased team productivity.
A DFIR Playbook Spec based on YAML for collaborative incident response processes.
Anomali is an AI-Powered Security Operations Platform that delivers speed, scale, and performance at a reduced cost, combining ETL, SIEM, XDR, SOAR, and TIP to detect, investigate, respond, and remediate threats.
PINNED
InfoSecHired
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
RoboShadow
A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.