Please use this identifier to cite or link to this item: http://hdl.handle.net/10609/133567
Title: Robot Process Automation (RPA) al SOC
Author: Majoral Llimiñana, Sergi
Tutor: Guijarro, Jordi  
Others: Garcia-Font, Victor  
Abstract: Incident response teams must deal with more and more security incidents and an automated response to these incidents has become a necessity to keep response time as small as possible. Automation is nothing new because it has always been done via scripts using application APIs. Modern flow automation and RPA tools allow non-programmers to automate tasks and processes in a more or less simple way both from APIs and using Applications user interfaces. The working environment used has been the updated version of CSIRT-KIT, which offers a complete set of free and open-source tools for security monitoring, incident management and response. The tools that make up the kit are pre-integrated with each other and the objective of this work has been to explore the open source and free automation tools available, test those that best fit the tools that make up the working environment and implement automation use cases adding value to the daily operations performed by the incident response teams. The results of this work show that it is feasible to automate this operation with the proposed tools, both in collaboration with human operators and autonomously by software robots, and to do it in a safe way being able to cover a 24x7 schedule.
Keywords: SOAR
OpenRPA
CSIRT-KIT
Document type: info:eu-repo/semantics/article
Issue Date: 1-Jun-2021
Appears in Collections:Trabajos finales de carrera, trabajos de investigación, etc.

Files in This Item:
File Description SizeFormat 
smajoralTFM0621memoria.pdfMemoria del TFM2,69 MBAdobe PDFThumbnail
View/Open