SIEM integration

Automate Devo Platform SIEM with plain language

Run Devo queries, read alerts and alert definitions, and forward VernacSecure SuperBot™ events into a Devo data table for correlation.

What you can do

Devo — Security Data Platform Query & Alerts API

  • Run a LINQ query against security tables
  • List triggered alerts
  • Read alert definitions
  • Forward a VernacSecure SuperBot™ event

Connection: bearer authentication against https://api.devo.com. Credentials are encrypted at rest, or prompted per action if you prefer never to store them.

Example

Ask in plain English

Prompt: “Show the last 24 hours of high severity alerts in Devo Platform”

Result: VernacSecure SuperBot™ runs the search, normalises the results and offers follow-up actions on other integrations.

Get started free

Read actions
  • Fetch alerts — Lists triggered alerts.
  • Fetch alert definitions — Lists configured alert definitions.
Write actions
  • Run query — Runs a LINQ query against Devo security tables.
  • Forward event — Forwards a VernacSecure SuperBot™ event to Devo.