Threat Hunting & Intelligence Bundle

MITRE-mapped detection engineering, IOC tracking, SIEM rules, and adversary analysis.

Included Skills (7)

  1. Proactive Threat Hunting — This skill proactively identifies threats by using hypothesis-driven hunting, IOC analysis, and anomaly detection for security analysts.
  2. APT Correlation Architect — This tool assists security analysts in developing multi-event SIEM correlation rules to detect complex APT lateral movement patterns across Windows environments.
  3. DLL Sideloading Detector — This tool identifies malicious DLL side-loading and search-order hijacking by analyzing Sysmon events to assist security analysts in proactive threat hunting efforts.
  4. Automated OSINT Framework — SpiderFoot automates OSINT investigations with 200+ modules, correlating data across sources to build comprehensive target profiles for threat intelligence.
  5. Threat Actor Profiler — This tool aggregates intelligence on adversary TTPs and campaign data to help security professionals build comprehensive profiles for threat modeling and executive briefings.
  6. Detection Engineering Automator — This skill automates the detection engineering lifecycle in Google SecOps, helping security engineers generate, simulate, and deploy YARA-L rules to close coverage gaps.
  7. Vulnerability Prioritization Assistant — This tool helps security professionals calculate and interpret CVSS scores to effectively prioritize vulnerability remediation efforts based on industry-standard risk assessment frameworks.