WithSecure Elements playbooks
WithSecure, formerly known as F-Secure Business, provides cybersecurity solutions focusing on threat detection, incident response, and endpoint protection.
Thinkst Canary
Thinkst Canary is a deceptive honeypot device that mimics various systems to lure and detect cyber threats, providing early and accurate breach alerts.
EfficientIP SOLIDserver DDI
EfficientIP SOLIDserver suite of appliances is designed to deliver highly scalable, secure and robust virtual and hardware appliances for critical IPAM-DNS-DHCP-NTP-TFTP services.
Nybble
Nybble Hub is the worldwide first blue team community which handles your alerts at a glance.
Eset Protect / Inspect
ESET Protect and ESET Inspect are two parts of the same security ecosystem, often compared to the brain and the magnifying glass of your network security.
Ubika Cloud Protector Traffic
Ubika Cloud Protector is a cloud-native security solution, providing advanced threat detection and data protection to secure cloud environments.
Azure Key Vault
Azure Key Vault is a cloud service that securely stores and manages sensitive information such as passwords, encryption keys, and certificates.
Broadcom Edge Secure Web Gateway
Broadcom Edge Security Web Gateway provides comprehensive protection for web traffic, offering advanced threat detection and prevention capabilities.
ExtraHop Reveal(x) 360
ExtraHop Reveal(x) 360 is a cloud-based network detection and response platform offering protection and detections for on-premises and cloud environments.
Palo Alto Cortex XDR (EDR)
Palo Alto Cortex XDR (EDR) is an advanced Endpoint Detection and Response solution offering real-time threat detection, investigation, and response capabilities.
Crowdstrike Falcon for Mobile
CrowdStrike Falcon is an Endpoint Detection and Response solution.
Microsoft Remote Server playbooks
To enable this module, please make sure you have properly configured WinRM on remote server.
Splunk SOAR (CTI integration)
An App for Splunk SOAR is available to interact with our Sekoia.io API.
Salesforce
Salesforce provides customer relationship management software and applications focused on sales, customer service, marketing automation, e-commerce, analytics, and application development.
Slack playbooks
This use case describes how to send a notification to a third party system like Slack or Microsoft Teams using webhooks and a playbook.
ServiceNow playbooks
ServiceNow is an IT company allowing creating workflow to empower employees productivity and to improve customers experience.
RiskIQ / Microsoft MDTI
RiskIQ is a cyber security company providing software as a service to detect phishing, fraud, malware, and other online security threats.
Cisco Umbrella Proxy
Cisco Umbrella offers flexible, cloud-delivered security.
Certificate Transparency
Certificate transparency is a security standard to monitor and audit certificates.
Stormshield SES playbooks
Stormshield SES is designed to protect endpoints such as desktops, laptops, and servers against a variety of threats and cyberattacks.
Crowdstrike Falcon playbooks
CrowdStrike Falcon is a cloud-native cybersecurity platform known for its advanced threat detection, endpoint protection, and real-time response capabilities.
Azure Application Gateway
Azure Application Gateway is a web traffic load balancer that manages traffic to your web applications with advanced routing, SSL termination, and Web Application Firewall (WAF) features.
Juniper Switches
Juniper Networks' JunOS is an advanced operating system powering Juniper's networking devices, renowned for its reliability, performance, and comprehensive feature set.
Bitsight SPM
Bitsight Security Performance Management enables organizations to continuously monitor, measure, and improve their cybersecurity performance.
Swimlane Turbine (CTI integration)
Swimlane + CTI is a threat lookup tool that automatically checks if links or files are bad by querying global databases for you.
Daspren Parad
Daspren is the only Data Detection and Response (DDR) that integrates detection and blocking of cyber attacks.
Ekinops OneOS
Ekinops OneOS is a comprehensive and flexible network operating system designed to meet the evolving needs of modern telecommunications networks.
AWS CloudFront
Amazon CloudFront is a web service that speeds up distribution of your static and dynamic web content, such as .html, .css, .js, and image files, to your users.
Trend Micro Email Security
Trend Micro Email Security is a robust email protection solution that safeguards against email-borne threats such as phishing, malware, and spam.
Trend Micro Apex One / Vision One endpoint
Trend Micro Apex One / Vision One Endpoint is Endpoint Detection and Response (EDR) solution that detects and protects your endpoints against threats.