Protective Intelligence & Threat Analysis
Detect, profile, and triage threats before they mobilize—always-on monitoring, OSINT fusion, and defensible escalations.
Coverage
Feeds & platforms
Triage
Thresholds & SLAs
Profiling
Capability & intent
Defensible
Evidence & logging
Filter by role:
Overall
0%
Controls
0%
Escalation
0%
72-Hour Flow
0%
Mark items as implemented. Use the role filter to focus each team.
Monitoring & Collection
0%
Triage & Thresholds
0%
Profiling & Assessment
0%
Escalation & Notification
0%
Evidence Preservation
0%
External Outreach & Takedowns
0%
Notify | Within | Channel | Log | Done |
---|---|---|---|---|
Analyst → Security Lead | 4h | Ticket + Email | Link(s) + brief | |
Daily digest | EOD | Ticket | Roll-up summary |
Notify | Within | Channel | Log | Done |
---|---|---|---|---|
Security Lead + IC | 1h | Call + Ticket | Initial severity set | |
Legal | 2h | Email (privileged) | Privilege note |
Notify | Within | Channel | Log | Done |
---|---|---|---|---|
IC + Legal + Exec | 15m | Bridge + Signal | Decision log started | |
PR + HR (as needed) | 30m | Bridge | Stakeholder map |
Notify | Within | Channel | Log | Done |
---|---|---|---|---|
All-hands (IC, Legal, PR, HR, Exec) | Immediate | War-Room | Chronology live | |
LE / Regulators (as required) | Immediate | Phone + Email | Preservation order |
Elapsed: 00:00:00
Started: —
T+0 to 2h — Detect & Validate
0%
T+2 to 8h — Profile & Assess
0%
T+8 to 24h — Mitigate & Coordinate
0%
T+24 to 72h — Document & Review
0%