43+ Integrations

Your databases. Your security tools. Your workflows. Connected in days, not months.

Data Sources

OSOpenSearch

Open-source search and analytics for logs and telemetry.

ESElasticsearch

Real-time search and log analytics at scale.

SFSnowflake

Cloud data warehouse for security analytics.

MSMicrosoft Sentinel

Cloud-native SIEM and SOAR platform.

SLAWS Security Lake

Centralized security data lake for automated ingestion.

S3S3

Object storage for log ingestion and archival.

BQBigQuery

Serverless data warehouse for analytics.

DBDatabricks

Unified analytics and data platform.

Threat Intelligence

VTVirusTotal

File and URL malware intelligence lookups.

ABAbuseIPDB

IP reputation and abuse reporting.

GNGreyNoise

Internet-wide noise and threat context.

AVAlienVault OTX

Open threat exchange and IOC sharing.

RFRecorded Future

Real-time threat intelligence platform.

MDMandiant

Enterprise threat intelligence and incident response.

EDR / XDR

CSCrowdStrike Falcon

Endpoint detection and response at cloud scale.

MDMicrosoft Defender

Enterprise endpoint and cloud security.

S1SentinelOne

Autonomous endpoint protection and response.

CBCarbon Black

Cloud-native endpoint security platform.

PAPalo Alto Cortex

Extended detection and response (XDR).

Identity & Access

ADAzure AD / Entra ID

Microsoft identity and access management.

OKOkta

Workforce and customer identity platform.

GWGoogle Workspace

Identity and collaboration signals.

DUDuo

Multi-factor authentication and access policies.

CACyberArk

Privileged access management.

PIPing Identity

Enterprise identity security and federation.

Cloud Platforms

AWAWS

CloudTrail, GuardDuty, Security Hub integration.

AZAzure

Activity Logs and Defender for Cloud signals.

GCGCP

Audit Logs and Security Command Center.

Email Security

M3Microsoft 365

Email and collaboration security signals.

PPProofpoint

Email protection and threat response.

MCMimecast

Email security and continuity platform.

ASAbnormal Security

AI-driven email defense and investigation.

Network & Firewall

PAPalo Alto Networks

Next-generation firewall and security.

FNFortinet

Integrated security fabric and FortiGate.

CICisco

Network security and visibility.

ZSZscaler

Cloud-delivered zero trust security.

CFCloudflare

Web application and DDoS protection.

Ticketing & Notifications

JIJira

Issue tracking and project management.

SNServiceNow

IT service and workflow automation.

PDPagerDuty

Incident response and on-call management.

SLSlack

Team collaboration and alert notifications.

MTMicrosoft Teams

Unified communication and alerts.

OGOpsGenie

Alerting and incident management.

Don't See Your Tool?

We're adding new integrations every week. Talk to us about connecting your stack.

Talk to Us →

Read our SIEM Buyer's Guide →  |  Try the Cost Simulator →