Explore OpenCTI or OpenAEV platform with 30 days Free Trial!
XTM Hub by Filigran
Sign Up
Microsoft Sentinel Incidents logo

Microsoft Sentinel Incidents

Automatic deploy
Supported by Filigran
Detection & Response Enablement

Overview

Imports security incidents, alerts, and observables from Microsoft Sentinel SIEM into OpenCTI as STIX Incidents with associated IOCs.

The Microsoft Sentinel Incidents connector imports security incidents, alerts, indicators, and observables from Microsoft Sentinel SIEM into OpenCTI. It creates structured STIX Incidents linked to associated entities and IOCs, enabling analysts to correlate SIEM detections with threat intelligence data.

Basic information

Microsoft Sentinel Incidents
Connectors
6.8.13
0

    We use cookies to run XTM Hub. Necessary cookies are always on, optional cookies (functionality, analytics, marketing) are used with your consent. Accept all, reject all, or manage your choices anytime in "Cookie settings".