About Rapid7
Rapid7 is a global cybersecurity company renowned for its expertise in vulnerability management, threat detection, and managed security operations, trusted by thousands of organizations worldwide to move from security visibility to decisive action. With a combined offering of powerful security analytics and managed detection and response services, Rapid7 is a strategic security partner for enterprises seeking both technology and expertise. Teams looking to integrate with Rapid7 or build a Rapid7 integration can use Synqly to connect Rapid7's vulnerability and detection data with security operations workflows through a normalized API connector.
To learn more about this integration, check out the Rapid7 technical docs.
About the Rapid7 InsightIDR Integration
Rapid7 InsightIDR is Rapid7’s cloud-native SIEM and extended detection and response (XDR) platform, combining behavioral analytics, user and entity behavior analytics (UEBA), endpoint visibility, and threat intelligence to help security teams detect and investigate threats faster. As Synqly’s SIEM provider, Rapid7 InsightIDR enables security teams to route normalized security event data from Synqly-connected tools into InsightIDR’s detection and analytics engine through a standardized connector. Integrate with Rapid7 InsightIDR to centralize security telemetry from across your stack into InsightIDR, enriching its behavioral detection rules and investigation capabilities with additional data sources.
Integration Use Cases
Get Alert
Retrieves an alert by ID.
Get Evidence
Retrieves the evidence for an investigation.
Get Investigation
Retrieves an investigation by ID.
Patch Investigation
Updates an investigation by ID.
Query Alerts
Queries alerts from the SIEM configured with the token used for authentication.
Query Events
Queries events from the SIEM configured with the token used for authentication.
Query Investigations
Queries investigations
Query Log Providers
Queries available log providers in the source SIEM