Files
Anthropic-Cybersecurity-Skills/skills/implementing-mitre-attack-coverage-mapping/assets/template.md
T

45 lines
989 B
Markdown

# MITRE ATT&CK Coverage Assessment Template
## Assessment Metadata
| Field | Value |
|---|---|
| Organization | |
| Assessment Date | |
| Assessor | |
| ATT&CK Version | v18.1 |
| SIEM Platform | |
| Total Active Rules | |
## Coverage Summary
| Metric | Value |
|---|---|
| Total Techniques Evaluated | |
| Techniques with Detection | |
| Coverage Percentage | |
| Average Detection Score | |
| Critical Gaps (Score 0) | |
## Top 10 Gap Techniques
| Priority | Technique ID | Name | Tactic | Current Score | Remediation Plan |
|---|---|---|---|---|---|
| 1 | | | | | |
| 2 | | | | | |
| 3 | | | | | |
| 4 | | | | | |
| 5 | | | | | |
## Detection Roadmap
### Q1 Goals
- [ ] Close top 5 critical gaps
- [ ] Enable missing data sources for priority techniques
- [ ] Validate top 10 existing rules with adversary emulation
### Q2 Goals
- [ ] Improve partial coverage techniques to score > 75
- [ ] Add enrichment to existing detection rules
- [ ] Implement detection-as-code pipeline