SIEM integration

Automate Securonix Unified Defense SIEM with plain language

Read Securonix violations, incidents and watchlists, and add an endpoint to a watchlist from VernacSecure SuperBot™.

What you can do

Securonix — Unified Defense SIEM REST API

  • List policy violations
  • Read incidents and their state
  • Add an entity to a watchlist

Connection: header authentication against https://example.securonix.net/Snypr. Credentials are encrypted at rest, or prompted per action if you prefer never to store them.

Example

Ask in plain English

Prompt: “Show the last 24 hours of high severity alerts in Securonix Unified Defense”

Result: VernacSecure SuperBot™ runs the search, normalises the results and offers follow-up actions on other integrations.

Get started free

Read actions
  • Fetch violations — Lists recent policy violations.
  • Fetch incidents — Lists open incidents.
Write actions
  • Add to watchlist — Adds the endpoint to a watchlist.