MarkSimos / MCRALinks
The Microsoft Cybersecurity Reference Architecture (https://aka.ms/MCRA) describes Microsoft’s cybersecurity capabilities and how they integrate with existing security architectures and capabilities.
☆21Updated 7 years ago
Alternatives and similar repositories for MCRA
Users that are interested in MCRA are comparing it to the libraries listed below
Sorting:
- Collection of resources related to the Center for Threat-Informed Defense☆76Updated last year
- A port of BHIS's Backdoors & Breaches for playingcards.io☆64Updated 2 years ago
- ☆133Updated last year
- The Infosec Community Definitive Guide to Jupyter Notebooks☆130Updated 5 years ago
- Repository with Sample KQL Query examples for Threat Hunting☆217Updated 3 years ago
- Creating a hardened "Blue Forest" with Server 2016/2019 Domain Controllers☆265Updated last year
- Building environments to replicate small networks and deploy applications☆331Updated 10 months ago
- Use Terraform to Provision Your Own Cloud-Based Remote Browsing Workstation☆26Updated last year
- These are files that a new CISO or someone introducing security to an organization can leverage to bridge the gap between security and th…☆77Updated 2 months ago
- DDTTX Tabletop Trainings☆28Updated 4 years ago
- ☆23Updated 2 years ago
- Controls Assessment Specification☆70Updated 8 months ago
- Distribution of the SANS SEC504 Windows Cheat Sheet Lab☆75Updated 5 years ago
- A python package for use in generating fake data for SOC and security automation.☆172Updated 9 months ago
- A Windows event logging and collection baseline focused on finding balance between forensic value and optimising retention.☆290Updated 4 years ago
- NIST CyberSecurity Framework management tool☆166Updated 4 years ago
- This was code for analyzing round 1 of the MITRE Enterprise ATT&CK Evaluation. Please check out https://github.com/joshzelonis/Enterprise…☆95Updated 5 years ago
- ☆55Updated 4 years ago
- Beacon Kibana Executable Report. Aggregates Sysmon Network Events With Elasticsearch and Kibana☆299Updated 2 weeks ago
- KQL queries for Advanced Hunting☆176Updated 5 years ago
- Cloud-native SIEM for intelligent security analytics for your entire enterprise.☆20Updated 2 years ago
- Dashboard for conducting Backdoors and Breaches sessions over Zoom.☆117Updated last year
- 🚨ATTENTION🚨 The Security Stack Mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is k…☆390Updated last year
- Microsoft Sentinel, Defender for Endpoint - KQL Detection Packs☆55Updated 2 years ago
- Purple Teaming Attack & Hunt Lab - Terraform☆161Updated 4 years ago
- Get started fast with a built out lab, built from scratch via Azure Resource Manager (ARM) and Desired State Configuration (DSC), to test…☆238Updated 5 years ago
- 🚨ATTENTION🚨 The VERIS mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here …☆72Updated last year
- CONVEX is a group of CTFs that are independently deployable into participant Azure environments.☆140Updated 3 years ago
- Atomic Purple Team Framework and Lifecycle☆299Updated 4 years ago
- Solution to deploy a Sentinel playground demo environment☆57Updated 2 years ago