5 More Use Cases for Integrating Your SIEM with Threat Intelligence
In this short post, we dive into five key use cases that highlight the indispensable role a well-integrated SIEM plays in enhancing an organization's threat hunting capabilities.
In this short post, we dive into five key use cases that highlight the indispensable role a well-integrated SIEM plays in enhancing an organization's threat hunting capabilities.
We discuss some of the benefits of pairing your SIEM with a threat intelligence platform, such as Recorded Future, ThreatConnect, Zerofox, Anomali and many more.
In this guide, we will detail five critical components of XDR integration along with their potential challenges and resolutions.
Metron Security has announced its successful completion of the Service Organization Control (SOC) 2 Type 1 audit of the suitability of its relevant security controls.
This guide explains how to get started with installing a Splunk SOAR for your security ecosystem.
This article walks through the steps needed to update/deploy your ServiceNow app into a QA Instance. To do so, we will be using the Development instance as the source.
We give ChatGPT a few spins at answering questions about XDR.
The goal of this article is to help users understand how data flows when we configure an integration.
Cortex XSOAR is designed to accommodate integrations whether it be from a custom solution or through the tools available in the app.
IBM Security QRadar Community Edition (CE) is a free and full-featured - albeit lighter -version of QRadar based on version V7.3.3. This edition is also specifically designed for students, app developers, and security professionals in need of a testing environment
In this post we detail a few of the common ways you can troubleshoot issues with your Cortex XSOAR application.
Logs can be retrieved for troubleshooting in IBM QRadar SOAR as needed and outlined in the steps below.
In the post below, we detail two different methods of extracting your log files from the platform.
The Cortex XSOAR Marketplace is the central hub where users can browse, purchase and deploy integrations between the main platform and third-party apps.
Splunk is widely used for its log retrieval and data sharing abilities, and is commonly integrated with a variety of tools such as SaaS cloud software like ServiceNow.
Splunk Enterprise 9.0 has just been rolled out and there are a plethora of new features and updates (both major and minor) to be noted with this release.