Group Purchasing
Group Purchasing

Detection Coverage Scorecard

Download Detection Coverage Scorecard (XLSX, 0.02MB)Last updated: 16 Jun, 2026
Created by:
Nick Mitropoulos
Nick Mitropoulos

Most detection programs have gaps they don't know about. This scorecard helps you find them.

Built on the DeTT&CT framework, it gives detection engineering teams a structured way to assess their environment across three dimensions: data source quality, telemetry visibility, and detection coverage against MITRE ATT&CK. Fill it out honestly, and you'll have a clear, evidence-based picture of where your program stands and where to focus next.

The scorecard includes pre-populated log sources and all 14 ATT&CK tactics, color-coded scoring scales, an auto-calculating summary tab, and step-by-step guidance on how to use your scores in DeTT&CT and ATT&CK Navigator.

Companion to SEC555: Detection Engineering and SIEM Analytics.

Author

Nick Mitropoulos
Nick Mitropoulos

Nick Mitropoulos

Certified Instructor

Nick Mitropoulos is a SANS Certified Instructor and author of SEC555: Detection Engineering and SIEM Analytics. As CEO of Scarlet Dragonfly and a veteran of SOC and incident response leadership, he equips students with real-world skills in detection engineering. Nick also serves on the GIAC Advisory Board, SANS CISO Network, and faculty of the SANS Technology Institute.

Read more about Nick Mitropoulos