Watch our latest fireside chat with Doug Cahill: Cybersecurity Integrations: The ROI Black Hole

PARTNER

Sumo Logic Cloud SIEM

Sumo Logic | SIEM

Sumo Logic is a cloud-native log management and security analytics platform providing SIEM, observability, and threat detection capabilities through a unified SaaS interface with continuous intelligence features.

Security teams and vendors looking to integrate Sumo Logic can route normalized log and security event data into Sumo Logic's cloud SIEM through Synqly. Build a Sumo Logic integration to consolidate security telemetry for analytics, detection, and compliance without custom HTTP Source configurations.

Configuration for Sumo Logic Cloud SIEM.

[Configuration guide](https://docs.synqly.com/guides/provider-configuration/sumo-logic-setup)

Integration Use Cases

feature_search

Get Investigation

Retrieves an investigation by ID.

troubleshoot

Patch Investigation

Updates an investigation by ID.

event_note

Post Events

Writes a batch of `Event` objects to the SIEM configured with the token used for authentication.

notifications_active

Query Alerts

Queries alerts from the SIEM configured with the token used for authentication.

event_list

Query Events

Queries events from the SIEM configured with the token used for authentication.

mystery

Query Investigations

Queries investigations

data_alert

Query Log Providers

Queries available log providers in the source SIEM

Integration Resources