Skip to main content

Sec-Link/Argus-Agentic-SOC-Platform

SkillsMP a collecté 10 skills depuis Sec-Link/Argus-Agentic-SOC-Platform. Ouvrez un skill pour examiner sa source et ses détails.

Dernière activité source enregistrée
Catalogue SkillsMP mis à jour
skills collectés
10
Étoiles GitHub
673
Forks GitHub
70

Skills dans ce dépôt

1 catégories métier · 100% classifié

Affichage de 10 skills collectés sur 10.

métier
Analystes en sécurité de l'information
description

Analyze suspicious cloud identity and access events, including role changes, new keys, unusual regions, and privilege escalation. Recommend evidence-preserving response actions.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Assess possible data movement using destinations, protocols, volume, files, and user context. Identify evidence gaps and recommend low-risk validation and containment actions.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Analyze suspicious DNS behavior such as high entropy, beaconing, rare domains, unusual record types, and query volume. Distinguish indicators from confirmed C2 and recommend safe validation.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Create a prioritized, reversible containment plan based only on observed evidence. Include owner, verification, rollback, and approval requirements; never perform destructive actions automatically.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Assess possible insider risk from unusual access, downloads, privilege use, and policy violations. Maintain neutral language, minimize personal data, and recommend auditable investigative steps.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Analyze process execution, downloaded files, hashes, parent-child chains, persistence, and host impact. Separate observed facts from hypotheses and propose safe collection and containment steps.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Analyze suspicious email indicators, sender authentication, URLs, attachments, user impact, and recommended containment. Never claim a link or attachment is malicious without evidence. Return concise findings and follow-up tasks.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Triage ransomware indicators such as mass file changes, encryption processes, ransom notes, and lateral movement. Prioritize isolation, evidence preservation, recovery coordination, and safe next tasks.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Investigate unusual authentication activity using source IP, account, time, geolocation, MFA, and privilege context. Recommend validation steps and avoid changing ticket status.

Langue du texte source : anglais

mis à jour
métier
Analystes en sécurité de l'information
description

Prioritize vulnerabilities using asset criticality, exploitability, exposure, known exploitation, compensating controls, and business impact. Do not invent CVEs or affected versions.

Langue du texte source : anglais

mis à jour
Affichage de 10 skills collectés sur 10.