Downloads

Free templates, cheatsheets, and playbooks to support your incident response operations.

IR Checklist Template

templates

A comprehensive incident response checklist covering all 8 lifecycle stages with task tracking and team assignment fields.

ir-checklist-template.xlsx

DFIR Cheatsheet Bundle

cheatsheets

Printable quick-reference sheets for common forensic artifacts, KQL queries, PowerShell commands, and evidence collection procedures.

dfir-cheatsheet-bundle.pdf

M365 Investigation Playbook

playbooks

Step-by-step playbook for investigating BEC, OAuth abuse, and data exfiltration in Microsoft 365 environments with UAL query templates.

m365-investigation-playbook.pdf

Advanced KQL Query Pack

queries

50+ production-ready KQL queries for Microsoft Sentinel and Defender covering lateral movement, persistence, and exfiltration detection.

advanced-kql-query-pack.yaml

Incident Commander Handbook

handbooks

Complete guide for incident commanders covering team coordination, communication templates, escalation procedures, and post-incident review frameworks.

incident-commander-handbook.pdf

Tabletop Exercise Kit

exercises

Ready-to-run tabletop exercise scenarios for ransomware, BEC, insider threat, and cloud compromise with facilitator guides and scoring rubrics.

tabletop-exercise-kit.zip