Cloud Detection and Response integrations

Arctic Wolf® supports these Cloud Detection and Response (CDR) integrations:
Vendor Log source type Ingestion method
Abnormal Cloud Email Security®

Email

Third-party API

Amazon Web Services (AWS)®

IaaS

AWS Ingester

Auth0®

Authentication, identity

AWN webhook API

Box®

SaaS

Third-party API

Cato SSE 360®

SASE

Third-party API

Cisco Duo®

Authentication, identity

Third-party API

Cisco Meraki®

Network

Third-party API

Cisco Secure Email®

Email

AWS Ingester

Cisco Umbrella®

Network

Third-party API

CyberArk Identity Security Platform®

SaaS

Third-party API

CrowdStrike Falcon Identity Protection®

Authentication, identity

Third-party API

CyberArk Privilege Cloud®

SaaS

Third-party API

Google Cloud Platform (GCP)®

IaaS

Third-party API

Google Workspace®

SaaS

Third-party API

iManage Threat Manager®

SaaS

Third-party API

Microsoft 365®

Email, SaaS

Third-party API

Microsoft Azure®

IaaS

Third-party API

Microsoft Defender XDR®

SaaS

Third-party API

Mimecast®

Email

Third-party API

Netskope®

SASE

Third-party API

Okta®

Authentication, identity

Third-party API

OneLogin®

Authentication, identity

Third-party API

Oracle Cloud Guard®

IaaS

Third-party API

PingOne®

Authentication, identity

Third-party API

Proofpoint Targeted Attack Protection (TAP)®

Email

Third-party API

Salesforce®

SaaS

Third-party API

Wiz®

SaaS

Third-party API

Zscaler Internet Access (ZIA)®

Network

AWN webhook API, syslog