SOARCA Logo

SOARCA

0
Free
Visit Website

SOARCA is an open-source Security Orchestration, Automation and Response (SOAR) tool that automates threat and incident response workflows using CACAO security playbooks. It supports standardized formats and technologies, including CACAOv2 and OpenC2, and allows for extensibility and customization. It can ingest, validate, and execute CACAOv2 security playbooks via a JSON API and has native capabilities for http(s), SSH, and OpenC2 interfaces. Additionally, it has an MQTT interface for adding custom integrations. The tool is designed for research and innovation purposes, allowing SOC, CERT, and CTI professionals to experiment with playbook-driven security automation.

FEATURES

ALTERNATIVES

A project that uses Athena and EventBridge to investigate API activity and notify of actions for incident response and misconfiguration detection.

Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.

A Security Orchestration, Automation and Response (SOAR) platform for incident response and threat hunting.

Request Tracker for Incident Response (RTIR) is a tool for incident response teams to manage incident reports, correlate data, and facilitate communication.

Repository of templates for Ayehu's workflows with the ability to design, execute, and automate IT and business processes.

A mature SIEM environment is critical for successful SOAR implementation.

Automate security incident handling and facilitate real-time activities of incident handlers.

Companion repository for deploying osquery in a production environment with tailored query packs.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved