This playbook is designed to empower SOC analysts to respond quickly to email-based threats such as phishing or spoofing attacks. The automation facilitates blocking the email sender at the firewall level using the Check Point R80 integration, preventing further malicious emails from reaching internal users.
The analyst retains control via a manual decision point, which ensures that only validated malicious senders are blocked. This playbook is ideal for handling alerts from email security gateways, phishing detection tools, or user-submitted incidents.
Suggested for you are based on app category, product compatibility, popularity, rating and newness. Some apps may not show based on entitlements. Learn more about entitlements.
This playbook is designed to empower SOC analysts to respond quickly to email-based threats such as phishing or spoofing attacks. The automation facilitates blocking the email sender at the firewall level using the Check Point R80 integration, preventing further malicious emails from reaching internal users.
The analyst retains control via a manual decision point, which ensures that only validated malicious senders are blocked. This playbook is ideal for handling alerts from email security gateways, phishing detection tools, or user-submitted incidents.
Please upgrade to one of the following broswers: Internet Explorer 11 (or greater) or the latest version of Chrome or Firefox