Skip to main content

Role-Based Reading Paths

Purpose

Give different reviewers a direct path through the manual without forcing them to read every page linearly.

CTI Analyst Path

  1. What Is CTI
  2. PIR, SIR, and EEI
  3. Evidence Labels
  4. Source Reliability
  5. Assumptions and Gaps
  6. Attribution Methodology
  7. Actor Profile Template
  8. Finished Intelligence Report Template

Detection Engineer Path

  1. MITRE ATT&CK as a Working Tool
  2. ATT&CK Mapping Mistakes
  3. Intelligence to Detection
  4. Telemetry Requirements
  5. Detection Backlog
  6. Detection Readiness Levels
  7. SOC Handoff
  8. Israel Threat Actors CTI Detection Dashboard

SOC Lead Path

  1. Intelligence Cycle
  2. Hunting Hypothesis Template
  3. SOC Handoff
  4. Detection Readiness Levels
  5. Customer-Driven AI CTI Workflow
  6. Limitations

Manager / Executive Path

  1. Intro
  2. Finished Intelligence vs Research Notes
  3. Confidence Language
  4. Executive Summary Template
  5. Ecosystem
  6. Known Limitations

Hiring Reviewer Path

  1. Publication-Grade Review Backlog
  2. Authoritative Bibliography
  3. Module Worked Examples
  4. Detection Readiness Levels
  5. AI CTI Control Matrix
  6. Cross-Project Correlation Register
  7. CI Validation Evidence

Diagram

flowchart LR
Analyst[CTI Analyst] --> Foundations[Foundations]
Analyst --> Attribution[Attribution]
Detection[Detection Engineer] --> ATTCK[ATT&CK Mapping]
Detection --> DRL[Detection Readiness]
SOC[SOC Lead] --> Handoff[SOC Handoff]
Manager[Manager] --> Executive[Executive Summary]
Reviewer[Hiring Reviewer] --> Evidence[Evidence and Validation]