Energy SOAR Documentation

Security Orchestration, Automation and Response platform for case management, alert triage, and playbook-driven incident response.

Get Started

Getting Started

First login, first investigation — from zero to a closed case.

Getting Started
Introduction

Product overview, core components, and problems Energy SOAR solves.

Introduction
Installation

Requirements, supported platforms, and installation steps.

Installation

Daily Use

Analyst Guide

Cases, alerts, tasks, observables, dashboards, and reports.

Analyst Guide
Admin Guide

User profiles, organisations, and platform administration.

Admin Guide
Use Cases

End-to-end incident response scenarios.

Use Cases

Configuration & Operations

Architecture

Component layout, data flow, and deployment topology.

Architecture
Configuration

Config files, authentication, permissions, database, and storage.

Configuration
Operations

Backup, upgrade, troubleshooting, and day-to-day operations.

Operations

Extend & Integrate

Integrations

Analyzers, responders, MISP, and Synapse connectors.

Integrations
Workflows

Playbook engine, nodes, and automation patterns.

Workflows
API

REST API reference for integration and automation.

API

Advanced

MSSP Deployment

Multi-tenant deployment for managed service providers.

MSSP Deployment
Release Notes

Version history and changelog.

Release Notes

Reference

Glossary

Definitions of key terms used throughout this documentation.

Glossary
FAQ

Answers to common questions from analysts and administrators.

FAQ