Rinjani Analytics
Tutorials

Step-by-step walkthroughs

Practical guides that get you from zero to running. Three levels: Starter (15-25 minutes), Intermediate (30 minutes), Advanced (45 minutes+).

Starter15 min6 steps

Onboarding in 15 minutes

From `pnpm install` to your first feed sync. Spin up the data plane, push the schema, run the seed script, and watch the first IOC land.

Read the walkthrough
Starter10 min4 steps

Connect your first enrichment provider

Wire VirusTotal into the enrichment pipeline. Add the key, verify the worker picks it up, see enriched IOCs in the dashboard.

Read the walkthrough
Starter20 min7 steps

Triage a CRIT incident from the dashboard

End-to-end analyst workflow: alert → IOC drawer → pivot in graph → mark as triaged → close. The thing your day-1 SOC tier-2 hire needs to learn.

Read the walkthrough
Intermediate30 min9 steps

Build a custom playbook

Author an event-driven playbook that fires when a KEV CVE lands. Trigger, condition, action, alert routing.

Read the walkthrough
Intermediate20 min6 steps

Export to MISP + STIX 2.1

Round-trip data between Rinjani and a MISP instance. Field mapping, relationship preservation, and what changes on re-import.

Read the walkthrough
Advanced45 min11 steps

Deploy Rinjani to Kubernetes with Helm

From a clean cluster to a running platform. Helm values, secrets management, ingress, observability stack, scaling notes.

Read the walkthrough
Advanced40 min10 steps

Federated TAXII sharing across organisations

Stand up the TAXII 2.1 endpoints, configure collections, and exchange threat intelligence with a partner organisation.

Read the walkthrough