Open Source Security Architecture

Incident Response Guides for Modern SOC Teams

Minimize your response time to cybersecurity incidents. A tested, open-source playbook collection fully compliant with NIST 800-61 standards.

Why Security Playbooks?

Standardized approaches designed to increase your organization's cybersecurity maturity.

NIST Standards

All processes are prepared in strict accordance with the NIST SP 800-61 (Computer Security Incident Handling Guide) framework.

Rapid Response (IR)

Shorten your Mean Time to Respond (MTTR) by following tested and approved steps instead of hesitating during a crisis.

Community Driven

A continuously updated knowledge pool powered by the open-source world, evolving against modern threats.

PowerShell Execution

Detection and analysis of suspicious PowerShell activity aligned with MITRE ATT&CK T1059.

Review

Malware Analysis

Behavioral analysis, detection techniques, and investigation workflows for malware incidents.

Review

Phishing

Detection, investigation, and response workflows for phishing and social engineering attacks (T1566).

Review

Enterprise SOC Integration

Reduce the workload of your analysts by integrating our playbooks directly into your SIEM, SOAR, or Ticketing systems.

  • Standardized incident response processes
  • Comprehensive training guide for junior SOC analysts
  • Verifiable methods for Audit procedures