๐ BlueOps Auto CVE & IOC feed ingestor with OpenAI risk triage & email alerts
โก 235 views ยท ๐ SecOps & Security Automation
Description
How it works
This Blue Team workflow ingests threat intelligence from public CVE and IOC feeds, merges the data, performs automated triage using OpenAI, and routes actionable alerts via email.
- ๐ฅ CVE and IOC feeds pulled from trusted sources
- ๐ค AI node evaluates risk severity and recommends response
- ๐ง Playbook logic determines whether to notify, monitor, or isolate
- ๐ง Alerts sent to email and also logged to Google Sheets
- ๐งฑ Built with modular, no-code logic for maximum clarity
Set up steps
- Add your OpenAI API key in the AI nodes
- Configure your email in the Gmail node
- Update Google Sheets credentials and sheet ID
- (Optional) Add a Cron or Webhook trigger to automate intake
Requirements
โข OpenAI API key
โข Gmail credentials
โข Google Sheets access
โข Internet connection
Whoโs it for
โข Blue teamers
โข SOC analysts
โข Cybersecurity students
โข SME defenders using no-code tooling
This template is part of the CYBERPULSE AI BlueOps Lite & Pro plans.
Visit cyberpulsesolutions.com/blueops for the full bundle.
๐ Nodes Used
Send Email, Google Sheets, HTTP Request, Schedule Trigger
๐ฅ Import
Download workflow.json and import into n8n:
Workflow menu โ Import from File