SIEM
SIEM integration guides for forwarding Vectra detections, entity data, and telemetry to supported security platforms.
Microsoft Sentinel SIEM integration (RUX)Microsoft Sentinel SIEM Codeless Connector Framework (RUX)Azure Sentinel Stream integration using AMAAzure Sentinel Stream integration using OMS (Deprecated)Crowdstrike Next-Gen SIEM integration (RUX)Crowdstrike Next-Gen SIEM integration (QUX)Google SecOps SIEM integration (QUX)Google SecOps SIEM integration (RUX)Google SecOps SIEM Stream integrationMicrosoft Sentinel NDR (Detect) integration using AMAQRadar SIEM integration (RUX)QRadar SIEM Integration (QUX)Splunk On-Prem SIEM / Vectra integration guide (start here for RUX)Splunk Cloud SIEM / Vectra integration guide (start here for RUX)Splunk SIEM / Vectra integration guide (start here for QUX)Splunk - Vectra Detect Add-On and Syslog Configuration (QUX)Splunk - Vectra Detect Integration Steps (QUX)Splunk TA - Changing from CEF to JSON for Vectra Detect (QUX)Splunk - Vectra SaaS Add-on Configuration (QUX)Vectra RUX Playbooks for Microsoft Sentinel CCFVectra RUX Best Practices for Microsoft Sentinel CCF
Last updated
Was this helpful?