Skip to main content

Practitioner Package

This package adds a complete synthetic project kit for the Customer-Driven AI CTI Project methodology.

All data is fake. Meridian Freight Group, users, IP addresses, events, and outcomes are fabricated examples for training, documentation, and replay validation.

Included Artifacts

ArtifactLocation
Fake customer scenarioexamples/scenarios/meridian-freight-cloud-identity-scenario.md
Sample CSV and Markdown registersexamples/registers/
Example Sigma ruleexamples/rules/privileged-mfa-backup-deletion.yml
Example SIEM queriesexamples/queries/
Test datasetexamples/datasets/cloud_identity_events.csv
Replay script and resultexamples/replay/
Gate A-F evidence packsexamples/gates/
Workflow output screenshotsstatic/img/workflow-output/
Executive reportexamples/reports/executive-report.md

Validation

Run:

python3 scripts/validate_examples.py
python3 examples/replay/replay-cloud-identity.py
npm run typecheck
npm run build

Reading Order

  1. Fake Customer Scenario
  2. Sample Registers
  3. Detection Artifacts
  4. Replay Example
  5. Gate Evidence Packs
  6. Workflow Output Screenshots
  7. Complete Worked Case