clab60917/RAG-LLM-SOC_analyst

SOC Analyst Level 1 Replacement using RAG LLM

37
/ 100
Emerging

This tool helps cybersecurity teams manage the overwhelming volume of server logs and security alerts. You feed it your server logs (like those from firewalls or servers), and it processes natural language questions about suspicious activities, failed logins, or general log summaries. The output is a clear, concise answer, acting like a Level 1 Security Operations Center (SOC) analyst.

No commits in the last 6 months.

Use this if your Level 1 SOC analysts are swamped with alerts and logs and you need an automated assistant to perform initial triage and answer common security queries quickly.

Not ideal if you need real-time threat detection from live data streams or require the system to automatically take actions like blocking IP addresses without human oversight.

cybersecurity security-operations threat-detection log-analysis incident-response
Stale 6m No Package No Dependents
Maintenance 0 / 25
Adoption 7 / 25
Maturity 16 / 25
Community 14 / 25

How are scores calculated?

Stars

27

Forks

5

Language

Python

License

MIT

Last pushed

Aug 16, 2024

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/rag/clab60917/RAG-LLM-SOC_analyst"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.