VYPR
researchPublished Aug 4, 2026· 1 source

Joinable Labs Launches Joinable Security for AI-Driven Threat Intelligence and Response

Joinable Labs introduces Joinable Security, featuring a community-driven Threat Map and AI-powered Runbooks to enhance threat analysis and automate incident response.

Joinable Labs has officially launched Joinable Security, marking its first domain on the broader Joinable platform. This new offering aims to tackle the dual challenges faced by modern security teams: the relentless evolution of adversary techniques and the difficulty in maintaining consistent, up-to-date incident response procedures.

At the core of Joinable Security are two key products. The first, Joinable Threat Map, is a free utility designed to foster community collaboration. It allows security professionals to map, analyze, and share insights into how adversaries operate, providing a dynamic and shared understanding of evolving threat landscapes. This tool is built upon Joinable's proprietary Propagator platform, described as a Trusted Knowledge Foundry.

The second product, Joinable Runbooks, is an enterprise-grade platform. It transforms an organization's existing security response documentation, standard operating procedures (SOPs), and incident-response plans into structured, permission-governed knowledge. This knowledge base is designed to be continuously synchronized with its source, ensuring accuracy and relevance.

Joinable Threat Map specifically ingests threat reports from government agencies and security organizations, mapping them against the MITRE ATT&CK framework. This enables analysts to explore, verify, and compare the tactics, techniques, and procedures (TTPs) employed by adversaries in a structured and accessible manner. The free and open nature of this tool encourages broad participation from the security community.

Joinable Runbooks addresses the internal response challenge by converting unstructured documentation into actionable, governed knowledge. Through the Joinable Agentic Framework, security teams can develop and own "Agentic Security Remediation Agents." These agents are human-in-the-loop by default and are designed to execute responses in alignment with an organization's actual practices, informed by the evolving threat intelligence from Joinable Threat Map. Crucially, these agents are owned by the organization, avoiding the 'black box' problem often associated with third-party solutions.

Brian Shin, Co-Founder of Joinable Labs, emphasized that organizations already possess the necessary components for defense: their internal procedural knowledge and the community's threat research. Joinable Security's mission is to consolidate these into trusted, governed knowledge and empower teams to build reliable, self-owned agents.

Developed in collaboration with a major cybersecurity firm, Joinable Runbooks demonstrates the practical application of turning existing documentation into actionable intelligence and automated agents. The platform is designed for seamless integration with existing security infrastructure, including SIEM, SOAR, and case-management systems, facilitating a more unified and efficient security operations environment.

Synthesized by Vypr AI