Azure-Sentinel/Playbooks/Get-SOCActions
dicolanl 525d001024 Updating Deploy buttons and links part 1 2021-06-16 00:25:40 +00:00
..
azuredeploy.json Update azuredeploy.json 2021-05-24 20:06:31 -06:00
readme.md Updating Deploy buttons and links part 1 2021-06-16 00:25:40 +00:00

readme.md

#Get-SOCActions author: Rin Ure

This playbook will provide users with Recommended SOC Actions using a .csv file that they upload into a WatchList and give it the the Alias of "SocRA". This also contains steps an Analyst should consider taking when an Analytic Detection has not been onboarded to the WatchList .csv file.

Deploy to Azure Deploy to Azure Gov