About this automation

An AI-powered Security Orchestration, Automation & Response (SOAR) workflow built entirely in n8n. The playbook automatically triages phishing and ransomware alerts, enriches them with VirusTotal intelligence, and sends rich HTML escalation emails — all without human intervention.

How to Use This Repository

This is a community-contributed repository for n8n. To use these workflows:

  1. Clone the repository to your local machine:
    git clone https://github.com/Ashurlu/SOC-SOAR-Playbook
  2. Explore the repository for .json or documentation files.
  3. Follow the repository's internal README for specific setup instructions.