You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
-[Contact Us for custom requests ↗️](https://www.crowdsec.net/business-requests?interest=CTI%20subscription))
107
108
108
109
---
109
110
@@ -202,20 +203,20 @@ Accelerate incident response with contextual threat intelligence and automated r
202
203
203
204
**Is it for me?**
204
205
Ideal if your SOC team is overwhelmed with security alerts and needs better context for prioritization.
205
-
Good option if you want to automate alert enrichment and reduce time-to-response for security incidents.
206
+
Add exclusive context to your alerts and automate incident response with up to 30+ IP reputation enrichment dimensions.
206
207
207
208
**How it works:**
208
-
- Configure notification plugins to automatically enrich alerts with global threat intelligence context.
209
-
-Set up CTI helpers in templates to add reputation data, attack patterns, and geographic context.
210
-
-Deploy operational dashboards for SOC teams to visualize threats and track security metrics.
211
-
-Integrate with existing SIEM/SOAR tools to enhance existing alert workflows.
209
+
-Consult CrowdSec CTI: per IP queries, advanced search on behavior, classifications or performed CVEs- Configure notification plugins to automatically enrich alerts with global threat intelligence context.
210
+
-Obtain your CTI API key from your CrowdSec Console account or a contact with CrowdSec team for higher quotas.
211
+
-Integrate it in your tools with out existing integrations or via simple calls to the API.
212
+
-🏅 Advanced usages: API search, Offline replication, ...
0 commit comments