mirror of
https://github.com/splunk/security_content
synced 2026-06-08 17:32:49 +00:00
47 lines
1.5 KiB
Markdown
47 lines
1.5 KiB
Markdown
---
|
|
title: "Risk Notable Mitigate"
|
|
last_modified_at: 2021-10-22
|
|
toc: true
|
|
toc_label: ""
|
|
tags:
|
|
- Response
|
|
- Splunk SOAR
|
|
- N
|
|
- o
|
|
- n
|
|
- e
|
|
---
|
|
|
|
[Try in Splunk SOAR](https://www.splunk.com/en_us/software/splunk-security-orchestration-and-automation.html){: .btn .btn--success}
|
|
|
|
#### Description
|
|
|
|
This playbook checks for the presence of the Risk Response workbook and updates tasks or leaves generic notes. The risk_notable_verdict playbooks recommends this playbook as a second phase of the investigation. Additionally, this playbook can be used in ad-hoc investigations or incorporated into custom workbooks.
|
|
|
|
- **Type**: Response
|
|
- **Product**: Splunk SOAR
|
|
- **Apps**: [N](https://splunkbase.splunk.com/apps/#/search/N/product/soar), [o](https://splunkbase.splunk.com/apps/#/search/o/product/soar), [n](https://splunkbase.splunk.com/apps/#/search/n/product/soar), [e](https://splunkbase.splunk.com/apps/#/search/e/product/soar)
|
|
- **Last Updated**: 2021-10-22
|
|
- **Author**: Kelby Shelton, Splunk
|
|
- **ID**: rn0edc96-ff2b-48b0-9f6f-63da3783fd63
|
|
|
|
#### Associated Detections
|
|
|
|
|
|
#### How To Implement
|
|
|
|
|
|
#### Playbooks
|
|

|
|
|
|
#### Required field
|
|
|
|
|
|
#### Reference
|
|
|
|
* [https://docs.splunk.com/Documentation/ESSOC/latest/user/Useplaybookpack](https://docs.splunk.com/Documentation/ESSOC/latest/user/Useplaybookpack)
|
|
|
|
|
|
|
|
|
|
[*source*](https://github.com/splunk/security_content/tree/develop/playbooks/risk_notable_mitigate.yml) \| *version*: **1** |