SIEM integration
Automate Securonix Unified Defense SIEM with plain language
Read Securonix violations, incidents and watchlists, and add an endpoint to a watchlist from VernacSecure SuperBot™.
What you can do
Securonix — Unified Defense SIEM REST API
- List policy violations
- Read incidents and their state
- Add an entity to a watchlist
Connection: header authentication against https://example.securonix.net/Snypr. Credentials are encrypted at rest, or prompted per action if you prefer never to store them.
Example
Ask in plain English
Prompt: “Show the last 24 hours of high severity alerts in Securonix Unified Defense”
Result: VernacSecure SuperBot™ runs the search, normalises the results and offers follow-up actions on other integrations.
Read actions
- Fetch violations — Lists recent policy violations.
- Fetch incidents — Lists open incidents.
Write actions
- Add to watchlist — Adds the endpoint to a watchlist.
Related siem automation pages
Armor Point · Datadog Cloud SIEM · Devo Platform · Elastic Security · Exabeam Security Operations · Fortinet FortiSIEM