OCA Proposal - Next Steps ACTION REQUIRED
Jason Keirstead
Thank you to all who attended the PGB meeting today.
-
Assistant - Mauricio Durán Cambronero (mauduran@...) Co-Chair - Open Cybersecurity Alliance, Project Governing Board www.opencybersecurityalliance.org
|
|
David Bizeul
Hello everybody and thank you for welcoming us as an OCA sponsor! Here are the slides I presented yesterday to illustrate better what would/could be the scope and results of the project. Best regards |
|
David Bizeul
Hi everyone, Jason asked for already engaged initiatives that could illustrate some actions of OXA. Even if we do not currently work with all related OASIS standards, links below are public repositories and could serve as examples or even as first steps. - On the ingestion of events (From proprietary format to ECS format) : https://github.com/SEKOIA-IO/intake-formats - On the orchestration part (CACAO like playbooks) : https://github.com/SEKOIA-IO/Community/tree/main/playbooks - On the automation part (a limited library that could be mapped with OpenC2): https://github.com/SEKOIA-IO/automation-library These are some kinds of repositories that OXA could/should propose, in addition with the other aspects we discussed. Related with CTI dissemination according with a tech profile, this is something that can be done with a feed such as this one to disseminate a central CTI into my network security components (illustration below, just to explain this is possible): Best regards Le ven. 3 mars 2023 à 06:51, David Bizeul <david.bizeul@...> a écrit :
|
|