https://github.com/infosecb/detection-as-code
An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.
https://github.com/infosecb/detection-as-code
blueteam cybersecurity detection-engineering threat-detection
Last synced: 9 months ago
JSON representation
An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.
- Host: GitHub
- URL: https://github.com/infosecb/detection-as-code
- Owner: infosecB
- License: gpl-3.0
- Created: 2021-11-21T13:49:06.000Z (about 4 years ago)
- Default Branch: main
- Last Pushed: 2022-03-12T13:46:09.000Z (almost 4 years ago)
- Last Synced: 2023-04-03T10:21:22.713Z (over 2 years ago)
- Topics: blueteam, cybersecurity, detection-engineering, threat-detection
- Language: Python
- Homepage: https://infosecb.medium.com/8a8fe7c65676?source=friends_link&sk=e8357bc01aeb2986e05d12d392b068da
- Size: 33.2 KB
- Stars: 22
- Watchers: 3
- Forks: 9
- Open Issues: 0
-
Metadata Files:
- Readme: README.md
- License: LICENSE
Awesome Lists containing this project
README
# Practical Detection-as-Code
An example of how to deploy a Detection-as-Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.
Described in my Medium article here:
[https://infosecb.medium.com/8a8fe7c65676?source=friends_link&sk=e8357bc01aeb2986e05d12d392b068da](https://infosecb.medium.com/8a8fe7c65676?source=friends_link&sk=e8357bc01aeb2986e05d12d392b068da)