Real-Time Security Threat Dashboard with Google Sheets, AI Risk Analysis & Email Alerts
Go to WorkflowDescription
๐ค Who itโs for
Blue Team leads, CISOs, and SOC managers who want automated visibility into threat metrics, endpoint alerts, and response actions โ without needing a full SIEM or BI platform.
Great for teams using Modules 1โ5 and now ready to report, review, or share BlueOps data across stakeholders.
โ๏ธ How it works / What it does
Fetches threat + response data from up to 5 Google Sheets
Aggregates data into four key slices:
summary_metrics: Total threats, actions, endpoints
daily_trends: Time-based charting
top_assets: High-risk endpoints or systems
actions_taken: Logged IR activity
Generates a clean HTML report and sends via email
Logs report summary to a central reporting tracker sheet
Optionally converts and stores PDF versions or links
๐ ๏ธ How to set up
Google Sheets:
Connect your live sheets from previous BlueOps modules (M1โM5)
Email Setup:
Insert sender credentials and recipient(s)
Customize Your Charts:
Edit the โ๐ Format Chartsโ and โ๐ Structure Report Bodyโ nodes
Trigger Options:
Run weekly, monthly, or on-demand via Webhook/Cron
Add PDF Generator (Optional):
Use Puppeteer, HTML โ PDF services, or internal scripts
๐ Requirements
Google account with access to all BlueOps logs
SMTP or Gmail access for report delivery
Optional: PDF storage service or HTML โ PDF logic
Previous modules (M1โM5) to populate threat/response data
๐งฉ How to customize the workflow
Swap out Google Sheets for Supabase or Notion
Modify visual output (color, layout, sections) using HTML nodes
Export to Airtable, Slack, or external BI tools
Add chart images using ChartJS, QuickChart API, or CloudConvert
๐ฆ This module is modular, professional, and presentation-ready.
All sections are labeled, editable, and safe for team-wide sharing.
๐ This module is the final piece of the CYBERPULSEBlueOps automation suite.
Get the full reporting engine and link with live BlueOps modules at
๐ cyberpulsesolutions.com/blueops