System Two Security is a SOC automation platform that utilizes generative AI for threat hunting and analysis. The platform operates through three main components: 1. Threat Research: Consolidates and unifies Cyber Threat Intelligence (CTI) reports into a centralized repository. 2. Threat Analysis: Creates customized attack patterns and generates hunt packages specific to an organization's attack surface. 3. Iterative Threat Hunting: Implements automated threat hunting processes based on generated hunt packages, producing detailed hunt reports with threat identification and mitigation plans. The system processes raw cyber threat advisories and automates the threat detection and containment workflow, designed for use by MSSPs and enterprise SOCs.
FEATURES
ALTERNATIVES
jimi is an orchestration automation tool for multi-team collaboration and automation in IT/Security operations, Development, and CI/CD pipelines.
A panic button app for triggering a ripple effect across apps responding to panic events
PowerGRR is a PowerShell module for the GRR API, allowing automation and scripting for incident response and remote live forensics.
A custom activity repository for Ayehu NG automation platform, allowing users to create and modify activities to fit their specific needs.
Incident Response Documentation tool for tracking findings and tasks.
AIL Framework is a modular system for analyzing and detecting information leaks from unstructured data sources, with capabilities for data extraction, correlation, and integration with threat intelligence platforms.
Repository of playbooks, scripts, and templates for automating and orchestrating Security Operations.
A Sysmon configuration file template with detailed explanations and tutorial-like features.
PINNED

InfoSecHired
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.

Mandos Brief Newsletter
A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

Kriptos
An AI-driven data classification and governance platform that automatically discovers, analyzes, and labels sensitive information while providing risk management and compliance capabilities.

System Two Security
An AI-powered platform that automates threat hunting and analysis by processing cyber threat intelligence and generating customized hunt packages for SOC teams.

Aikido Security
Aikido is an all-in-one security platform that combines multiple security scanning and management functions for cloud-native applications and infrastructure.

Permiso
Permiso is an Identity Threat Detection and Response platform that provides comprehensive visibility and protection for identities across multiple cloud environments.

Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.

Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.