Skip to main content
Solved

Integrating 3rd party API data

  • January 16, 2025
  • 1 reply
  • 53 views

Forum|alt.badge.img+4

We are having an application which is exposing it's findings in it's own API, we have been provided with their endpoint URL and API token.

I'm unable to see any integration options available in SIEM/SOAR where we can pull such data from the 3rd party API except those already defined like Microsoft Graph/Crowdstrike etc.,

What should be our approach here? 

 

Best answer by rajukg11

Please see these sample programs to create your own cloud function that will pull logs from the source and ingest into Chronicle.

https://github.com/chronicle/ingestion-scripts/tree/main

 

1 reply

rajukg11
Staff
Forum|alt.badge.img+6
  • Staff
  • Answer
  • January 16, 2025

Please see these sample programs to create your own cloud function that will pull logs from the source and ingest into Chronicle.

https://github.com/chronicle/ingestion-scripts/tree/main