@@ -36,13 +36,34 @@ You can find SOAR integrations and their components in the following places:
36
36
> - Logic Apps HTTP calls
37
37
38
38
39
+ ## AbuseIPDB
40
+
41
+ | Product | Integration components | Supported by | Scenarios |
42
+ | --- | --- | --- | --- |
43
+ | ** AbuseIPDB** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Enrich incident by IP info, <br >Report IP to Abuse IP DB, <br >Deny list to Threat intelligence |
44
+ |
45
+
39
46
## Atlassian
40
47
41
48
| Product | Integration components | Supported by | Scenarios |
42
49
| --- | --- | --- | --- |
43
50
| ** Jira** | [ Managed Logic Apps connector] ( /connectors/jira/ ) <br ><br >Playbooks | Microsoft<br ><br >Community | Sync incidents |
44
51
|
52
+
53
+ ## AWS IAM
54
+
55
+ | Product | Integration components | Supported by | Scenarios |
56
+ | --- | --- | --- | --- |
57
+ | ** AWS IAM** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Add User Tags, <br >Delete Access Keys, <br >Enrich incidents |
58
+ |
59
+
60
+ ## Checkphish by Bolster
45
61
62
+ | Product | Integration components | Supported by | Scenarios |
63
+ | --- | --- | --- | --- |
64
+ | ** Checkphish by Bolster** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Get URL scan results |
65
+ |
66
+
46
67
## Check Point
47
68
48
69
| Product | Integration components | Supported by | Scenarios |
@@ -66,6 +87,13 @@ You can find SOAR integrations and their components in the following places:
66
87
| --- | --- | --- | --- |
67
88
| ** Falcon endpoint protection** <br >(Available as solution) | Playbooks | Microsoft | Endpoints enrichment,<br >isolate endpoints |
68
89
|
90
+
91
+ ## Elastic Search
92
+
93
+ | Product | Integration components | Supported by | Scenarios |
94
+ | --- | --- | --- | --- |
95
+ | ** Elastic search** <br >(Available as solution) | Playbooks | Microsoft | Enrich incident |
96
+ |
69
97
70
98
## F5
71
99
@@ -86,7 +114,8 @@ You can find SOAR integrations and their components in the following places:
86
114
| Product | Integration components | Supported by | Scenarios |
87
115
| --- | --- | --- | --- |
88
116
| ** FortiGate** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Azure Function<br ><br >Playbooks | Microsoft | Block IPs and URLs |
89
- |
117
+ | ** Fortiweb Cloud** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Azure Function<br ><br >Playbooks | Microsoft | Block IPs and URLs , <br >Incident enrichment |
118
+ |
90
119
91
120
## Freshdesk
92
121
@@ -95,6 +124,12 @@ You can find SOAR integrations and their components in the following places:
95
124
| ** Freshdesk** | [ Managed Logic Apps connector] ( /connectors/freshdesk/ ) | | Sync incidents |
96
125
|
97
126
127
+ ## GCP IAM
128
+
129
+ | Product | Integration components | Supported by | Scenarios |
130
+ | --- | --- | --- | --- |
131
+ | ** GCP IAM** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Disable service account, <br >Disable service account key, <br >Enrich Service account info |
132
+ |
98
133
99
134
## Have I Been Pwned
100
135
@@ -117,6 +152,13 @@ You can find SOAR integrations and their components in the following places:
117
152
| ** Resilient** | Custom Logic Apps connector<br ><br >Playbooks | Community | Sync incidents |
118
153
|
119
154
155
+ ## InsightVM Cloud API
156
+
157
+ | Product | Integration components | Supported by | Scenarios |
158
+ | --- | --- | --- | --- |
159
+ | ** InsightVM Cloud API** | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Enrich incident with asset info, <br >Enrich vulnerability info, <br >Run VM scan |
160
+ |
161
+
120
162
## Microsoft
121
163
122
164
| Product | Integration components | Supported by | Scenarios |
@@ -131,13 +173,34 @@ You can find SOAR integrations and their components in the following places:
131
173
| ** Microsoft Defender for IoT** | Playbooks | Microsoft | Orchestration and notification |
132
174
| ** Microsoft Teams** | [ Managed Logic Apps connector] ( /connectors/teams/ ) <br ><br >Playbooks | Microsoft<br ><br >Community | Notifications, <br >Collaboration, <br >create human-involved responses |
133
175
|
176
+
177
+ ## Minemeld
178
+
179
+ | Product | Integration components | Supported by | Scenarios |
180
+ | --- | --- | --- | --- |
181
+ | ** Minemeld** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Create indicator, <br >Enrich incident |
182
+ |
183
+
184
+ ## Neustar IP GEO Point
185
+
186
+ | Product | Integration components | Supported by | Scenarios |
187
+ | --- | --- | --- | --- |
188
+ | ** Neustar IP GEO Point** <br >(Available as solution) | Playbooks | Microsoft | Get IP Geo Info |
189
+ |
134
190
135
191
## Okta
136
192
137
193
| Product | Integration components | Supported by | Scenarios |
138
194
| --- | --- | --- | --- |
139
195
| ** Okta** | Managed Logic Apps connector<br ><br >Playbooks | Community | Users enrichment, <br >Users remediation |
140
196
|
197
+
198
+ ## OpenCTI
199
+
200
+ | Product | Integration components | Supported by | Scenarios |
201
+ | --- | --- | --- | --- |
202
+ | ** OpenCTI** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Create Indicator, <br >Enrich incident, <br >Get Indicator stream, <br >Import to Sentinel |
203
+ |
141
204
142
205
## Palo Alto
143
206
@@ -154,6 +217,13 @@ You can find SOAR integrations and their components in the following places:
154
217
| ** Proofpoint TAP** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Accounts enrichment |
155
218
|
156
219
220
+ ## Qualys VM
221
+
222
+ | Product | Integration components | Supported by | Scenarios |
223
+ | --- | --- | --- | --- |
224
+ | ** Qualys VM** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Get asset details, <br >Get asset by CVEID, <br >Get asset by Open port, <br >Launch VM scan |
225
+ |
226
+
157
227
## Recorded Future
158
228
159
229
| Product | Integration components | Supported by | Scenarios |
@@ -190,6 +260,27 @@ You can find SOAR integrations and their components in the following places:
190
260
| --- | --- | --- | --- |
191
261
| ** Slack** | [ Managed Logic Apps connector] ( /connectors/slack/ ) <br ><br >Playbooks | Microsoft<br ><br >Community | Notification, <br >Collaboration |
192
262
|
263
+
264
+ ## TheHive
265
+
266
+ | Product | Integration components | Supported by | Scenarios |
267
+ | --- | --- | --- | --- |
268
+ | ** TheHive** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Create alert, <br >Create Case, <br >Lock User |
269
+ |
270
+
271
+ ## ThreatX WAF
272
+
273
+ | Product | Integration components | Supported by | Scenarios |
274
+ | --- | --- | --- | --- |
275
+ | ** ThreatX WAF** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Block IP / URL, <br >Incident enrichment |
276
+ |
277
+
278
+ ## URLhaus
279
+
280
+ | Product | Integration components | Supported by | Scenarios |
281
+ | --- | --- | --- | --- |
282
+ | ** URLhaus** <br >(Available as solution) | Custom Logic Apps connector<br ><br >Playbooks | Microsoft | Check host and enrich incident, <br >Check hash and enrich incident, <br >Check URL and enrich incident |
283
+ |
193
284
194
285
## Virus Total
195
286
0 commit comments