LogPoint

LogPoint logo

The Logpoint SIEM Trend Vision One™ integration retrieves alerts and composite alerts from the platform. It parses them to their individual components, extracting all relevant data and making it available for further analysis, alerting, dashboards, and case management. The integration only requires Trend Vision One API credentials – it's a breeze to configure and get data flowing from Trend Vision One to Logpoint.

The Logpoint SOAR Integration can fetch, parse, normalize, and enrich logs from the platform. It allows customers to store logs for compliance purposes and ingest them into reports, dashboards, alerts, and playbooks. The SOAR playbooks aggregate the original Trend Vision One components of the composite alerts into a single case. They also automatically correlate them with additional alerts from UEBA and other log sources to create a complete attack timeline and detection verdict.