Blue Team SOC
Verified IntegrationClient Configuration
— Connect Blue Team SOC to Claude Desktop or Cursor in seconds{
"mcpServers": {
"blue-team-soc": {
"command": "npx",
"args": [
"-y",
"@modelcontextprotocol/server-blue-team-soc"
],
"env": {}
}
}
}~/Library/Application Support/Claude/claude_desktop_config.json (macOS) or %APPDATA%\Claude\claude_desktop_config.json (Windows).System Overview
Automate defensive security operations by integrating a comprehensive suite of host forensics, SIEM, and threat intelligence tools with AI clients.
7/22/2026
Open Source
stdio / SSE RPC
Frequently Asked Questions
Architecture and operational details for Blue Team SOC
It automates a wide range of tasks including log analysis, network monitoring, and system hardening within host forensics; agent inventory, security alerts, and alert timelines for Wazuh SIEM; and IP/domain reputation checks and hash analysis for threat intelligence.
Related MCP Servers
Browse all servers →Provides comprehensive historical and real-time crypto market data, including orderbooks, trades, candles, and more, from Hyperliquid, HIP-3, and Lighter.xyz.
Facilitates gasless blockchain transactions and interactions directly from Claude AI conversations.
Bridges Claude AI with blockchain networks, enabling gasless transactions, swaps, and transfers directly from natural language conversations.