BigHugger
sk Skill · mukul975

performing-threat-hunting-with-elastic-siem

Performs proactive threat hunting in Elastic Security SIEM using KQL/EQL queries, detection rules, and Timeline investigation to identify threats that evade automated detection. Use when SOC teams need to hunt for specific ATT&CK techniques, investigate anomalous behaviors, or validate detection coverage gaps using Elasticsearch and Kibana Security.

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
jsonbashmitre-attackPythonkibanaeqlkqlthreat-huntingsiemelasticsoc
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0
Licence
Apache-2.0
Host stars
33k
Host language
Python