TheHive--it works
Use Cases and Deployment Scope
TheHive is our incident response platform, as a small team it allows us to automate a lot of the tasks we need to perform. The design also allows us to set up templates which sign to our response plans. We use it on every Cyber Security incident we deal with in the University, and ties into a number of our third party service providers (in some cases, we have gone with a service provider as we know there was easy integration with TheHive).
Pros
- Templates for cases, ensuring standard processes
- Integration with third parties, to provide a single screen for incident response
- Customisation, so that what we see reflects the way we work
Cons
- Analysers and responders might need more more documentation to help us understand them
Likelihood to Recommend
Managing incident response - it does exactly what it is supposed to do!
