This playbook provides a structured approach to disabling user accounts, ensuring proper validation before taking any action. It enhances security by integrating manual approvals with automated enforcement in Active Directory and ArcSight SOAR.
This playbook is designed to disable a user account in Microsoft Active Directory (AD) following a security incident or policy violation. It integrates with ArcSight SOAR and Microsoft Active Directory to ensure a structured and controlled response process.
Please upgrade to one of the following broswers: Internet Explorer 11 (or greater) or the latest version of Chrome or Firefox