対象ユーザー
- SOC analysts and security engineers
- Managed security providers
- Detection-engineering teams
- Incident-response leads
Tetrees AI Pack · TAIP/1 · v1.0.0
A defensive SOC investigation pack that fuses alert evidence, maps behavior to MITRE ATT&CK, grades confidence, and proposes approval-gated containment with a replayable ledger.
Tetrees Agent ガイド
Security queues mix duplicate alerts, incomplete telemetry, adversarial noise, and high-impact actions; a fast narrative without evidence preservation can misclassify incidents or destroy forensic context.
以下のリクエストを出発点にして、詳細を用途に合わせて置き換えてください。
An impossible-travel alert, MFA reset, and mailbox rule change may belong to one account-takeover incident.
Correlate these identity, email, and VPN events. Build the timeline, map only supported ATT&CK techniques, grade confidence, and propose safe containment requiring approval.
期待される結果: A deduplicated incident, entity timeline, evidence citations, supported technique map, benign alternatives, and approval-gated containment with preservation steps.
A reported message contains a suspicious link, but the evidence does not yet show execution or credential use.
Analyze the attached message metadata, URL observations, endpoint telemetry, and identity events. State what is proven, what is suspected, and the next safe checks.
期待される結果: A staged phishing investigation, evidence gaps, confidence and severity separation, escalation criteria, and no unsupported host isolation.
Agent Studio で OpenAI、Claude、Z.AI を選び、Tetrees ポイントまたは BYOK で実行します。
ホスト実行では署名済みのツールだけを使用します。ローカル MCP では、別途設定して承認したツールを追加できます。
Agent AVCP
テスト済み TAIP 成果物は本レポートと署名に結合されています。スコアは試験証拠であり将来の全出力を保証しません。
総合スコア
9.5
10点満点
必須ゲート
実行または取得にはログインしてください。
まだレビューがありません。