The AI Autonomous SOC & Purple-Team Engine
-
Updated
Aug 2, 2026 - Rust
The AI Autonomous SOC & Purple-Team Engine
O OmniSec é um SOC autônomo orquestrado por IA (Swarm). Integra agentes especializados, detecção, sandbox, inteligência de ameaças, playbooks de resposta a incidentes, ferramentas como Wazuh/OpenSearch/MCP e módulo GRC para conformidade normativa.
An autonomous, lightweight Security Operations Center (SOC) designed for resource-constrained edge devices. Integrates a WAF, honeypots, and an LLM-powered AI analyst for automated threat detection and active response.
Production-grade SOC lab featuring Wazuh SIEM, Shuffle SOAR, and ServiceNow integration. Includes automated incident response playbooks, Active Directory deployment via IaC, and end-to-end telemetry pipeline documentation.
Open benchmark suite for measuring SOC autonomy level against the SAF (L0-L5). Community-owned end-to-end incident scenarios for evaluating autonomous SOC systems.
Research for security teams whose alert volume has outrun the SOC and who are deciding how to scale operations: add people, or add AI agents that triage and investigate at machine speed with humans in control.
The SOC Autonomy Framework (SAF) — a vendor-neutral classification system for degrees of security operations autonomy (L0-L5). Analogous to SAE J3016 for the autonomous SOC.
CLI tool to classify a SOC product's autonomy level (L0-L5) against the SOC Autonomy Framework. Answer a questionnaire, get your SAF level and gaps to the next level.
AI-Powered Cyber Deception Platform - HoneyNet Intelligence + Autonomous SOC Agent powered by Claude AI
Add a description, image, and links to the autonomous-soc topic page so that developers can more easily learn about it.
To associate your repository with the autonomous-soc topic, visit your repo's landing page and select "manage topics."