Our threat hunters and incident response teams created the GIBSEN (Graphical Information Base for Security Event Notation) methodology to simplify and standardize how incidents are described, reported, and used for training. Our cyber teams have worked with the NSA, US Cyber Command, and F2000 cyberteams, and everyone had a different model and method of organizing and representing what occurred during a cyber incident.
GIBSEN templates, artifacts, and structures leverage collaborative graphics tools like Miro and Draw.io to centralize and accelerate incident documentation and reporting. Just as MITRE ATT&CK and NIST helped standardize threats, GIBSEN will provide a shared language and methodology for your team to standardize incident reporting and resolution. The GIBSEN Methodology maps the incident reports into popular reporting models, including: