SIEM integration
Automate Armor Point SIEM with plain language
Read Armor Point alerts, cases and assets, and forward VernacSecure SuperBot™ events into the Armor Point security operations pipeline for correlation and response.
What you can do
Armor Point — Security Operations Platform REST API
- List alerts and their severity
- Read cases and investigations
- Read tracked assets
- Forward a VernacSecure SuperBot™ event
Connection: bearer authentication against https://api.armorpoint.com. Credentials are encrypted at rest, or prompted per action if you prefer never to store them.
Example
Ask in plain English
Prompt: “Show the last 24 hours of high severity alerts in Armor Point”
Result: VernacSecure SuperBot™ runs the search, normalises the results and offers follow-up actions on other integrations.
Read actions
- Fetch alerts — Lists alerts.
- Fetch cases — Lists cases.
- Fetch assets — Lists tracked assets.
Write actions
- Forward event — Forwards a VernacSecure SuperBot™ event to Armor Point.
Related siem automation pages
Datadog Cloud SIEM · Devo Platform · Elastic Security · Exabeam Security Operations · Fortinet FortiSIEM · Google Security Operations (Chronicle)