Skip to content

Work Flow

scottbrumley edited this page Sep 4, 2020 · 2 revisions
  1. Get Attack Group Dossier “MO” - Pull from Mitre or Autofocus or can we pull campaign from Pan Unit42 CozyDuke
  2. Searching environment for IOCs
  3. Create new Incident
  4. Build context around IOC (define Impact)
  5. List possible actions for analyst
  6. Update Dashboard to indicate success or failure of hunt
Clone this wiki locally