Our aims are to:
- Provide a forum where members active in the field of Incidence Response (IR) automation can exchange best practices.
- Document our knowledge—in the SIG, write a common best practices document for automation in the context of incidence response (IR)
- Compile a list of tools for automation in IR including their focus areas
- Host at least three meetings per year, one being at the FIRST annual conference and another two (usually virtual) meetings around February and September;
- Disseminate best practices in terms of CSIRT organisation to support automation needs;
- Identifying ways to provide agile and effective automation;
- Cooperate with other similar regional and global initiatives/groups – e.g. IHAP group, GÉANT TF-CSIRT…
- Interact and collaborate with other FIRST SIGs in areas of common interest.
- Aaron KAPLAN (Liaison)
- Andreas MÜHLEMANN (SWITCH-CERT)
- Benoît ROUSSILLE (EC Cybersecurity Operations Centre)
- David DURVAUX (EC Cybersecurity Operations Centre)
- Razvan GAVRILA (ENISA)
- Vasileios MAVROEIDIS (UIO.no)
- Vilius BENETIS (NRD CIRT)
Being a FIRST member is not a requirement to participate in this SIG, though we encourage it. Join requests can be submitted using the link below, they'll be moderated by the SIG Chairs.