I would love to have access to this app - how do I go about it? Can't seem to find much information in that regard.
Looks like the GIT hub was updated today with specific instructions - so I will mark this as answered
Is that proton mail.com or proton.com I did not think you could have a space??
proton mail dot com
remove the space and add a "."
So it should not be "brazowy at proton mail dot com" but rather "brazowy at proton dot mail dot com".
proton.mail.com is not recognized. Looks like it should really be "brazowy at protonmail dot com".
Doksu - who does the email go to? I have reached out to my rep, but he does not know who to send the email or request to in order to get me the application? Is my Splunk rep a "splunker"? This is not very clear at all.
+Please e-mail brazowy at proton mail dott com from your organisation-provided e-mail account (ideally PGP/SMIME signed) with the exact subject line "Security Playbook Project Registration". This is required so association with your organisation can be confirmed but will be kept in strict confidence. Please include your github account in the e-mail so we can send you a repository invite. The github account you provide does not need to be associated in any way with your organisation.
I tried this but still haven't heard back as of yet.
The reason you haven't heard back yet is because it's 2am on a Saturday morning :P. Those requests have now been actioned.
Thank you!
The github really does not tell you how to get it. It states it is US-CERT amber. I reached out to US-CERT within my sector and asked them to search the portal and provide me a copy, but they are unable to find it????
@ mcbradford
github indeed tells one how to get access . Look at recent changes :
Please e-mail brazowy at proton mail dott com from your organisation-provided e-mail account (ideally PGP/SMIME signed) with the exact subject line "Security Playbook Project Registration". This is required so association with your organisation can be confirmed but will be kept in strict confidence. Please include your github account in the e-mail so we can send you a repository invite. The github account you provide does not need to be associated in any way with your organisation.
The above instructions ("Please e-mail brazowy...") are not visible on https://github.com/doksu/TheSecurityPlaybookProject as of October 2017.
US-CERT has no relationship with this project. They're merely an organisation that uses the TLP information-sharing standard (and a succinct explanation of it).
Looks like the GIT hub was updated today with specific instructions - so I will mark this as answered
It says that I have to request from a splunker or splunk trustee.....
whom?
This community was only established a few days ago. A blog post will be published shortly providing more background information. Essentially, it's closed to ethical security professionals and the content is TLP:Amber. As such, a person's background needs to be vetted before membership is granted. The exact mechanism for this is still being refined. If you're on Slack ping me (trustedsubject), otherwise contact a Splunk employee who can provide a referral.
Looking forward to your contribution to the community. 🙂
Hi Klaxdal, could you specify which app you wish to access? Thanks!
The Security Playbook app, https://splunkbase.splunk.com/app/3378/
Correct - The Security Playbook app, https://splunkbase.splunk.com/app/3378/