EDR / XDR integration
Automate WithSecure Elements EDR / XDR with plain language
Read WithSecure Elements devices and detections, and isolate a host from the network through the Elements API.
What you can do
WithSecure Elements — Security Events & Devices API
- List protected devices
- Read security events and detections
- Isolate a device from the network
Connection: bearer authentication against https://api.connect.withsecure.com. Credentials are encrypted at rest, or prompted per action if you prefer never to store them.
Example
Ask in plain English
Prompt: “Isolate the laptop with the latest critical detection in WithSecure Elements EDR”
Result: VernacSecure SuperBot™ reads recent detections, confirms the device and isolates it, with a full audit entry.
Read actions
- Fetch devices — Lists protected devices.
- Fetch security events — Lists security events and detections.
Write actions
- Isolate device — Isolates the named device from the network.