
🔐 Cybersecurity
Zero trust, SIEM pipelines, incident response and secure network zones. Open any template to see the finished diagram, then use it as the starting point for your own in the Studio.
11 templates
A zero trust access model: every request to an internal app is checked for user identity, device health and policy, whether it comes from the office or home.
A security incident response process based on the NIST lifecycle: detect, triage, contain, eradicate, recover and learn.
How security logs from across an organisation reach the SIEM: collection, parsing, enrichment, detection rules and alerts for the SOC.
How SAML single sign-on works when an employee opens a SaaS app: redirect to the company identity provider, MFA and a signed assertion.
A classic secure network layout: internet-facing services in a DMZ between two firewalls, with internal systems and databases never exposed directly.
A STRIDE threat model for a web application, listing example threats in each category with the main mitigations.
The life of a vulnerability finding: discovered by a scanner, triaged, assigned, fixed, verified and closed, or accepted as risk.
How a login with MFA works: password check, risk evaluation, a push or TOTP challenge and session issue.
A SOC platform: logs and alerts flow into a SIEM, SOAR playbooks automate response, and analysts work cases.
What the security team does when an employee reports a phishing email: analyse, contain, clean up and learn.
Tables for an asset inventory and risk register: assets, owners, vulnerabilities, risks, controls and exceptions.
More Cybersecurity templates are being added regularly.