Splunk SOAR Community Playbooks Logo

Splunk SOAR Community Playbooks

0
Free
Updated 11 March 2025
Visit Website

The Splunk SOAR Community Playbooks repository contains default initial playbooks and custom functions for each Splunk SOAR instance, with content migration to Splunk's GitHub in progress. External submissions are paused until migration completion to ensure no content interruption for Splunk SOAR customers. The platform automatically links to the branch matching the running Splunk SOAR version.

FEATURES

SIMILAR TOOLS

Python command line utility for incident response in AWS

Fast suspicious file finder for threat hunting and live forensics.

A collection of incident response methodologies for various security incidents, providing easy-to-use operational best practices.

DFIRTrack is an open source web application focused on incident response for handling major incidents with many affected systems, tracking system status, tasks, and artifacts.

A DFIR Playbook Spec based on YAML for collaborative incident response processes.

A project that uses Athena and EventBridge to investigate API activity and notify of actions for incident response and misconfiguration detection.

Fast Intercept is a security automation platform that empowers users to maximize their existing security products and automate routine tasks.

Templates for incident response run-books tailored for AWS environments based on NIST guidelines.

A Sysmon configuration file template with detailed explanations and tutorial-like features.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved