SentinelOne
Integrate SentinelOne EDR1 with your product –– along with other EDR & security vendors. Connect your product to all the applications your customers use via Leen's Unified API to close more deals, retain customers, and expand to new markets.
Integrate SentinelOne EDR1 with your product –– along with other EDR & security vendors. Connect your product to all the applications your customers use via Leen's Unified API to close more deals, retain customers, and expand to new markets.
Description
Unified API for SentinelOne EDR
SentinelOne is an AI-powered endpoint security platform that provides EDR and threat detection capabilities.
Using Leen's Unified API for SentinelOne EDR, you can:
- Extract detection and response data, including IOCs (Indicators of Compromise).
- Correlate endpoint activities with vulnerabilities for comprehensive security insights.
- Provide remediation lifecycle tracking to improve incident resolution efficiency.
Supported products
Lorem ipsum dolor sit amet, consectetur adipisc
Supported fields
Leen model
Supported
vendor_id
title
severity
vendor_severity
status
vendor_status
first_event_time
last_event_time
pid
process_command_line
process_sha1
process_sha256
process_md5
parent_pid
user_name
active_directory_username
active_directory_domain
tactic_name
tactic_source
technique_name
technique_link
Supported Alert Fields
Leen model
Supported
vendor_id
title
severity
vendor_severity
status
vendor_status
first_event_time
last_event_time
pid
process_command_line
process_sha1
process_sha256
process_md5
parent_pid
user_name
active_directory_username
active_directory_domain
tactic_name
tactic_source
technique_name
technique_link