MITRE ATT&CK
Integration and Ecosystem - MITRE ATT&CK

MITRE ATT&CK MITRE-ATTACK-Integration-Engenuity-Evaluations-CALDERA-NIST-CSF-CIS-Lockheed-Kill-Chain-Diamond-Model-STIX-TAXII: MITRE ATT&CK Integration + MITRE Engenuity + ATT&CK Evaluations + CALDERA + NIST CSF + CIS + STIX + TAXII

Integrate ATT&CK with broader cybersecurity ecosystem and frameworks. MITRE Engenuity ATT&CK Evaluations - rigorous evaluations of cybersecurity vendor solutions against real adversary tradecraft (APT3 + APT29 + Carbanak/FIN7 + Wizard Spider + Sandworm + Turla + DPRK scenarios + ICS Triton evaluation). Annual evaluation cycle. MITRE Engenuity Center for Threat-Informed Defense (CTID) - public-private collaboration advancing ATT&CK + research projects + Sensor Mappings + Atomic Red Team + ATT&CK Insights. CALDERA automated adversary emulation platform for security team testing. ATT&CK Navigator visualisation tool. Atomic Red Team library of executable security tests (Red Canary). Integration with NIST Cybersecurity Framework 2.0 (mapping to Identify + Protect + Detect + Respond + Recover + Govern functions) + NIST 800-53 + NIST 800-61 + NIST 800-115 + ISO 27001 Annex A + ISO 27035 incident management + ISO 27037 digital evidence + CIS Controls v8 + Lockheed Martin Cyber Kill Chain + The Diamond Model of Intrusion Analysis + STIX 2.x / TAXII 2.x threat intelligence exchange + CAPEC (Common Attack Pattern Enumeration and Classification) + CVE + CVSS + MAEC + DTrack PRE-ATT&CK. Threat intelligence sharing platforms (MISP + ThreatConnect + Anomali + Recorded Future + EclecticIQ + Cisco SecureX). Atomic threat behavioural analytics (BAS) - SafeBreach + AttackIQ + Cymulate + XM Cyber + Pentera + Picus Security. Used by CISA + NCSC UK + ACSC Australia + CSE Canada + ANSSI France + BSI Germany + NCSC NL + CERT-EU + FBI + Secret Service + DOJ + NSA + USCYBERCOM + Five Eyes (US + UK + Australia + Canada + New Zealand) + EU CSIRT Network + many private SOCs + MSSPs + threat intelligence vendors (CrowdStrike + Microsoft + Mandiant + Recorded Future + ThreatConnect + Anomali + Elastic + Splunk + IBM X-Force + Palo Alto Unit 42 + Cisco Talos + Sophos Labs + Trend Micro + Kaspersky + ESET + Bitdefender + Sucuri + Cybereason). MAPS_TO compliance frameworks like SOC 2 + PCI DSS + HIPAA + GDPR + 23 NYCRR 500 + Cyber Resilience Act.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.