Playbooks & Templates
Battle-tested documentation from championship teams. Download templates, checklists, and operational guides for CCDC competition.
CCDC Championship Guide
5-Day Intensive Preparation Manual - Complete training program with all 8 Iron Rules, day-by-day battle plan, Red Team attack patterns, 50+ command reference, all templates, and case studies from championship teams. Everything you need in one comprehensive document.
Team Playbooks
Comprehensive guides for each team role with templates and procedures.
Captain Playbook
Status board template, decision framework, escalation procedures, and team coordination protocols.
- Status Board Template
- Priority Matrix
- Escalation Flowchart
- Communication Protocol
Windows/AD Playbook
Active Directory hardening checklist, GPO templates, credential management procedures.
- AD Hardening Checklist
- GPO Quick Reference
- Credential Rotation SOP
- Event Log Queries
Linux/Services Playbook
Service hardening guides, configuration baselines, quick recovery procedures.
- Service Hardening Guide
- Config Baselines
- Recovery Procedures
- Log Locations
Network Playbook
Firewall rule templates, network topology documentation, traffic analysis guide.
- Firewall Templates
- Topology Doc
- Traffic Analysis
- Segmentation Guide
IR Playbook
Incident report templates, evidence collection guide, timeline documentation.
- IR Report Template
- Evidence Collection
- Timeline Format
- Penalty Reduction Guide
Individual Templates
Standalone templates for specific tasks.
Operational Checklists
Print-ready checklists for competition day.
Pre-Competition Checklist
- All team members confirmed
- Roles assigned and understood
- Printed materials prepared
- Equipment tested
- Transportation arranged
- Emergency contacts shared
First 15 Minutes
- Obtain network topology
- Identify all hosts
- Confirm scored services
- Document admin credentials
- Establish communication rhythm
- Captain status board active
15-60 Minutes
- Change default passwords
- Disable unknown accounts
- Lock admin interfaces
- Verify service health
- Enable logging
- Sync time across systems
Ongoing Operations
- Service health checks (15 min)
- Log review (continuous)
- Inject status tracking
- Incident documentation
- Team status updates (30 min)
- Change log maintenance
Command Reference
Essential commands for rapid response.
net usernet user [user] [password]Get-Servicenetstat -anoGet-EventLog -LogName Security -Newest 50cat /etc/passwdpasswd [user]systemctl list-units --type=servicess -tlnptail -f /var/log/auth.log