Triaging Security Incident With Ir Playbook

Classifies and prioritizes security incidents using structured IR playbooks and SIEM/case-management queries (Splunk, TheHive) to determine severity, assign response teams, and initiate the appropriate response procedures. Use when a new SOC alert needs triage, multiple concurrent incidents require prioritization, or automated triage rules need validation or tuning.

gabrielmoreira Updated 17 repo stars

File contents

gabrielmoreira/agent-skills-mirror/tree/main/mirrors/repos/mukul975@Anthropic-Cybersecurity-Skills/skills/triaging-security-incident-with-ir-playbook commit 83b3e29948

Frequently asked questions

npx skillmds@latest add gabrielmoreira/triaging-security-incident-with-ir-playbook