Security automation: from idea to tool

In today’s rapidly evolving cybersecurity landscape, manual threat detection processes struggle to keep pace with the growing sophistication and volume of cyberattacks. Threat hunting, the proactive approach to detecting and neutralizing advanced threats, can be a time-consuming and resource-intensive task. Automation, coupled with open-source tools, offers an efficient and cost-effective way to enhance threat hunting capabilities.

In this video we explore the approach of threat hunting automation using widely available open-source tools, such as MISP, Shuffle, RTIR, IntelOwl. We will discuss how automation frameworks streamline data collection, false-positive management, and incident response, significantly reducing response times and enabling more efficient use of cybersecurity resources.

The session includes:

  • Real-world use cases
  • Tool demonstrations
  • Best practices for implementing automated threat hunting in CSIRTs and SOCs of various sizes

Other news and stories

SOCshare: 2026 July cyber landscape review
SOCshare: 2026 July cyber landscape review
In 2025, NRD Cyber Security saw growth in both its project-based activities and ongoing services
In 2025, NRD Cyber Security saw growth in both its project-based activities and ongoing services
Justas Kaminskas on what CTF is and how to win it
Justas Kaminskas on what CTF is and how to win it
SOCshare June 2026: cybersecurity landscape review
SOCshare June 2026: cybersecurity landscape review
The 3rd edition of the Guide for developing a National Cybersecurity Strategy
The 3rd edition of the Guide for developing a National Cybersecurity Strategy
SOCshare May 2026: News in cyber threat landscape
SOCshare May 2026: News in cyber threat landscape
SOCshare April 2026 review : Adobe Acrobat Reader, Claude and phishing
SOCshare April 2026 review : Adobe Acrobat Reader, Claude and phishing
SOCcare March 2026: A “Little Gift” from the photo shop
SOCcare March 2026: A “Little Gift” from the photo shop