Skip to main content

Rubrik Fileset Ransomware Discovery - Rubrik Polaris

This Playbook is part of the Rubrik Security Cloud Pack.#

Supported versions

Available on Cortex XSOAR (versions 6.0.0 and later) and Cortex XSIAM.

This playbook performs IOC Scan on fileset object. It also creates tickets on ServiceNow using "ServiceNow v2" integration. Supported integrations:

  • RubrikPolaris
  • ServiceNow v2

Dependencies#

This playbook uses the following sub-playbooks, integrations, and scripts.

Sub-playbooks#

  • Rubrik IOC Scan - Rubrik Polaris

Integrations#

  • RubrikPolaris
  • ServiceNow v2

Scripts#

  • Set
  • Print
  • http

Commands#

  • servicenow-add-comment
  • servicenow-update-ticket
  • servicenow-create-ticket

Playbook Inputs#


NameDescriptionDefault ValueRequired
ClusterIdCluster ID of the incident.incident.rubrikcdmclusteridRequired
ObjectIdObject ID of the incident.incident.rubrikpolarisfidRequired

Playbook Outputs#


There are no outputs for this playbook.

Playbook Image#


Rubrik Fileset Ransomware Discovery - Rubrik Polaris