tag

incident-response

38 indexed skills · max 10 per page

skills (38)

implementing-soar-playbook-with-palo-alto-xsoar

mukul975/Anthropic-Cybersecurity-Skills · implementing-soar-playbook-with-palo-alto-xsoar

3

Implement automated incident response playbooks in Cortex XSOAR to orchestrate security workflows across SOC tools and reduce manual response time.

implementing-soar-playbook-for-phishing

mukul975/Anthropic-Cybersecurity-Skills · implementing-soar-playbook-for-phishing

0

Automate phishing incident response using Splunk SOAR REST API to create containers, add artifacts, and trigger playbooks

conducting-post-incident-lessons-learned

mukul975/Anthropic-Cybersecurity-Skills · conducting-post-incident-lessons-learned

0

Facilitate structured post-incident reviews to identify root causes, document what worked and failed, and produce actionable recommendations to improve future incident response.

performing-soc-tabletop-exercise

mukul975/Anthropic-Cybersecurity-Skills · performing-soc-tabletop-exercise

0

Performs tabletop exercises for SOC teams simulating security incidents through discussion-based scenarios to test incident response procedures, communication workflows, and decision-making under pressure without impacting production systems. Use when organizations need to validate IR playbooks, train analysts, or meet compliance requirements for incident response testing.

analyzing-persistence-mechanisms-in-linux

mukul975/Anthropic-Cybersecurity-Skills · analyzing-persistence-mechanisms-in-linux

0

Detect and analyze Linux persistence mechanisms including crontab entries, systemd service units, LD_PRELOAD hijacking, bashrc modifications, and authorized_keys backdoors using auditd and file integrity monitoring

performing-cloud-forensics-with-aws-cloudtrail

mukul975/Anthropic-Cybersecurity-Skills · performing-cloud-forensics-with-aws-cloudtrail

0

Perform forensic investigation of AWS environments using CloudTrail logs to reconstruct attacker activity, identify compromised credentials, and analyze API call patterns.

implementing-velociraptor-for-ir-collection

mukul975/Anthropic-Cybersecurity-Skills · implementing-velociraptor-for-ir-collection

0

Deploy and configure Velociraptor for scalable endpoint forensic artifact collection during incident response using VQL queries, hunts, and pre-built artifact packs across Windows, Linux, and macOS environments.

performing-memory-forensics-with-volatility3-plugins

mukul975/Anthropic-Cybersecurity-Skills · performing-memory-forensics-with-volatility3-plugins

0

Analyze memory dumps using Volatility3 plugins to detect injected code, rootkits, credential theft, and malware artifacts in Windows, Linux, and macOS memory images.

building-phishing-reporting-button-workflow

mukul975/Anthropic-Cybersecurity-Skills · building-phishing-reporting-button-workflow

0

Implement a phishing report button in email clients with automated triage workflow that analyzes user-reported suspicious emails and provides feedback to reporters.

performing-memory-forensics-with-volatility3

mukul975/Anthropic-Cybersecurity-Skills · performing-memory-forensics-with-volatility3

0

Analyze volatile memory dumps using Volatility 3 to extract running processes, network connections, loaded modules, and evidence of malicious activity.

prevpage 1 / 4next