https://catalogartifact.azureedge.net/publicartifacts/versasec.azure-sentinel-solution-versaseccms-2bb1042a-9e61-4630-a623-d4a3da2378c3/685134f7-d3c5-49b5-8b54-61187ec2fc38_azure-marketplace216.png

vSEC:CMS Sentinel

oleh Versasec AB

Collect vSEC:CMS and vSEC:CLOUD system health statuses and system alerts.

The vSEC:CMS Connector for Microsoft Sentinel is an essential integration that leverages the Codeless Connector Framework (CCF). It securely streams data from your vSEC:CMS directly into a dedicated Log Analytics table. You instantly transform raw logs into correlation ready data fields, unifying events with your overall security operations.

Key technical advantages: Advanced Threat Correlation
Zero Infrastructure Overhead: Deployed as a Sentinel solution via the content hub catalogue via CCF, you eliminate the OpEx and maintenance burden of intermediate function apps or collectors.
Rapid Deployment: Follow a simple workflow in the Sentinel content hub, ensuring a secure, repeatable, and code-free deployment in minutes.

This solution includes
  • Data Connectors: 1
  • Custom Log Tables: 2
  • Data Collection Rules: 1

Prerequisities
  • This solution requires no extra license from Versasec.
  • Management URL to access the Versasec vSEC:CMS REST API
  • API Token for authentication
  • vSEC:C SREST API Service configured and enabled

Releasenotes: https://github.com/versasec/Azure-Sentinel/blob/master/Solutions/VersasecCMS/Readme.md

Sekilas

https://catalogartifact.azureedge.net/publicartifacts/versasec.azure-sentinel-solution-versaseccms-2bb1042a-9e61-4630-a623-d4a3da2378c3/a2a5c459-35f5-418c-80d3-9cc74a8b3fc8_systemlogs.png