Skip to content

Dettectinator workflow

Martijn Veken edited this page Dec 12, 2022 · 1 revision

The picture below shows how Dettectinator can be integrated into your detection engineering workflow. Steps 1 and 3 can be fully automated based on VCS pipelines or scheduling. The analyst can enrich the techniques altered by Dettectinator by adding an approriate score to it. This enriched YAML file can be used the next time Dettectinator is being run.

workflow

Clone this wiki locally