Supported Integrations
    • 01 Oct 2024
    • 1 Minute to read
    • PDF

    Supported Integrations

    • PDF

    Article summary

    Red Canary MDR consolidates a diverse array of security tools, allowing you to centrally manage all your security alerts.

    We analyze both alerts and raw telemetry from endpoint, network, cloud, identity and other data sources, helping you detect cyber threats earlier and stop them faster without disrupting your existing workflows.

    Get more value from your security tools and workflows by integrating the below list of supported integrations with Red Canary:

    The following providers are supported for Red Canary MDR:

    Provider

    Supported Platform

    Class of Security Data

    Ingest Type

    Amazon Web Services

    AWS

    Cloud

    API

    Cisco

    Firepower

    Network

    Email

    Cisco

    Meraki

    Network

    HTTP

    Cisco

    Umbrella

    Network

    Email

    CrowdStrike

    Falcon

    EDR

    API

    Darktrace

    Enterprise Immune System

    Network/Internet of Things (IOT)

    Email

    Dragos

    Platform

    Operational Technology (OT)

    Syslog

    ExtraHop

    Reveal(x) 360

    Network

    API

    ExtraHop

    Reveal X Enterprise

    Network

    HTTP

    Fortinet

    Fortigate

    Network

    Email, Syslog

    Google

    Cloud Platform (GCP)

    Cloud

    API

    Google

    Workspace

    SaaS

    API

    Jamf

    Pro/Protect

    EDR

    API

    Lacework

    Polygraph

    Cloud

    API

    Microsoft

    Azure

    Cloud

    API

    Microsoft

    Defender for Cloud 

    Cloud

    API

    Microsoft

    Defender for Cloud Apps

    Identity

    API (via Microsoft Graph v2)

    Microsoft

    Defender for Endpoint

    EDR

    API Poll (via Microsoft Graph v2)

    Microsoft

    Defender for Identity

    Identity

    API (via Microsoft Graph v2)

    Microsoft

    Defender for Office 365

    Email

    API Poll (via Microsoft Graph v2)

    Microsoft

    Entra ID Identity Protection

    Identity

    API (via Microsoft Graph v2)

    Microsoft

    Entra ID

    Identity

    API

    Microsoft

    Office 365 Management API

    Aggregate

    API

    Microsoft

    Sentinel

    SIEM

    API

    Okta

    Workforce Identity

    Identity

    API

    Palo Alto

    Cortex XDR

    EDR

    API

    Palo Alto

    PAN-OS

    Network

    Syslog

    Palo Alto

    Threat Prevention

    Network

    Syslog

    Palo Alto

    Wildfire

    Network

    Email and Syslog

    Proofpoint

    Targeted Attack Protection (TAP)

    Email

    API

    SentinelOne

    Singularity

    EDR

    API

    VMware Carbon Black

    Carbon Black Cloud

    EDR

    API

    VMware Carbon Black

    Carbon Black EDR

    EDR

    API


    Was this article helpful?