Request Tracker for Incident Response (RTIR) is a tool designed for incident response teams, providing pre-configured queues and workflows to manage incident reports, correlate key data, and facilitate communication among multiple parties. It offers features such as incident handling workflow, separate queues, customizable email templating, and integration with external systems. RTIR provides a dedicated incident dashboard, custom fields, and search functionality to track incident data. It also includes tools for network lookups, identification, and reporting. The tool is compatible with Request Tracker extensions and offers scripted actions for bulk ticket creation. RTIR is used by many CERT and CSIRT teams worldwide and offers a free trial.
FEATURES
ALTERNATIVES
Migrated Splunk SOAR Connectors to new GitHub organization for better organization and management.
Incident response framework focused on remote live forensics
CimSweep is a suite of CIM/WMI-based tools for incident response and hunting operations on Windows systems without the need to deploy an agent.
CBRX is a cloud-based platform that automates incident analysis and reporting for cybersecurity teams.
A standardized framework for describing and classifying cybersecurity incidents
Incident response and case management solution for efficient incident response and management.
Templates for incident response run-books tailored for AWS environments based on NIST guidelines.
PINNED
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.