https://catalogartifact.azureedge.net/publicartifacts/data443riskmitigationinc1761580347231.azure-sentinel-solution-cyren-cs-ioc-automation-495f1e83-3694-41dc-8807-a805aec8c313/image0_LogolargeCyren.png
Cyren CrowdStrike IOC Automation
by Data443
Just a moment, logging you in...
Cyren IP reputation threat intelligence for Microsoft Sentinel with CrowdStrike IOC automation.
The Cyren CrowdStrike IOC Automation solution integrates Cyren's IP reputation threat intelligence feed with Microsoft Sentinel. It automatically retrieves known malicious IP addresses from Cyren and pushes them to CrowdStrike Falcon as custom IOCs for automated blocking and detection.
This solution includes:
- Logic App playbook for automated Cyren IP reputation IOC retrieval
- Automated custom IOC submission to CrowdStrike Falcon via API
- Scheduled execution for continuous threat intelligence updates
Prerequisites:
- Microsoft Sentinel workspace
- Cyren API credentials (IP Reputation feed access)
- CrowdStrike Falcon with API client credentials and IOC Manager permissions