IBM QRadar SOAR

IBM QRadar SOAR

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
  • 1.  Regarding Phishing and Phishing Campaign

    Posted Sun February 05, 2023 03:20 PM
    Hi Team, 

    Do we have any OOTB playbook or sample playbook which we can use for Phishing and Phishing campaign. 

    Regards
    Shubham

    ------------------------------
    Shubham Agarwal
    ------------------------------


  • 2.  RE: Regarding Phishing and Phishing Campaign

    Posted Thu February 09, 2023 03:30 AM

    Hi All, 

    Can we get any inputs on this. 

    Thanks..



    ------------------------------
    Shubham Agarwal
    ------------------------------



  • 3.  RE: Regarding Phishing and Phishing Campaign

    Posted Fri February 10, 2023 09:31 AM

    Good morning Shubham

    IBM Qradar SOAR has OotB "Phishing" incident type included and when you create a new incident/ case with incident type "Phishing", you get a playbook started for this type of attacks. Is this what you are looking for ?
    If this is not sufficiant and you need extentions, integrations and customizations, IBM will be happy to assist you with their SOAR experts.

    Best regards, Thomas Knorr



    ------------------------------
    Thomas Knorr
    ------------------------------



  • 4.  RE: Regarding Phishing and Phishing Campaign

    Posted Sun February 19, 2023 07:58 AM

    Hi Thomas, 

    Thanks for your response but I can see only couple of tasks and phases when I am creating an incident with incident type as phishing. 

    can you please help me with an automated playbook which can be run from playbook section for phishing incidents. 

    Regards

    Shubham



    ------------------------------
    Shubham Agarwal
    ------------------------------



  • 5.  RE: Regarding Phishing and Phishing Campaign

    Posted Tue February 21, 2023 01:36 AM

    Hi All, 

    Can someone please share an update on this query. 

    Thanks 



    ------------------------------
    Shubham Agarwal
    ------------------------------