SIEM integration

Automate LogRhythm Axon SIEM with plain language

Read LogRhythm alarms, cases and log sources, and open a case from a VernacSecure SuperBot™ finding.

What you can do

LogRhythm — Axon / SIEM REST API

  • List alarms and their status
  • Read cases and log sources
  • Create a case

Connection: bearer authentication against https://logrhythm.example.com:8501. Credentials are encrypted at rest, or prompted per action if you prefer never to store them.

Example

Ask in plain English

Prompt: “Show the last 24 hours of high severity alerts in LogRhythm Axon”

Result: VernacSecure SuperBot™ runs the search, normalises the results and offers follow-up actions on other integrations.

Get started free

Read actions
  • Fetch alarms — Lists alarms.
  • Fetch cases — Lists cases.
  • Fetch log sources — Lists log sources.
Write actions
  • Create case — Opens a case for the named endpoint.