SOARCA Logo

SOARCA

0
Free
Updated 11 March 2025
Visit Website

SOARCA is an open-source Security Orchestration, Automation and Response (SOAR) tool that automates threat and incident response workflows using CACAO security playbooks. It supports standardized formats and technologies, including CACAOv2 and OpenC2, and allows for extensibility and customization. It can ingest, validate, and execute CACAOv2 security playbooks via a JSON API and has native capabilities for http(s), SSH, and OpenC2 interfaces. Additionally, it has an MQTT interface for adding custom integrations. The tool is designed for research and innovation purposes, allowing SOC, CERT, and CTI professionals to experiment with playbook-driven security automation.

FEATURES

SIMILAR TOOLS

A robust and flexible hunt and incident response tool for investigating AzureAD, Azure, and M365 environments.

An AI-powered security operations platform that automates alert investigation, triage, and response workflows for SOC analysts.

A DFIR console integrating various cybersecurity tools and frameworks for efficient incident response.

A collection of structured incident response playbook battle cards that provide prescriptive countermeasures and procedures for combating cyber threats and attacks during security incidents.

A security analytics platform that integrates with Google Chronicle to deliver Autonomic Security Operations through data engineering, detection engineering, and response engineering.

A Sysmon configuration file template with detailed explanations and tutorial-like features.

A Sysmon configuration repository for customizing Microsoft Sysinternals Sysmon configurations with modular setup.

Receive important notifications and updates related to North American electric grid security.

A collection of incident response methodologies for various security incidents, providing easy-to-use operational best practices.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved