IBM QRadar

IBM QRadar

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only

Crowdstrike integration with Qradar

  • 1.  Crowdstrike integration with Qradar

    Posted Wed September 14, 2022 03:25 AM
    Hello Community,

    We have integrated crowdstrike with IBM Qradar and getting the logs as well.

    However the logs that we get on Qradar are just the detection events however i am interested in getting USB access events as well from crowdstrike.

    Is it possible to create detection event on crowdstrike based on these USB access logs. If that can be done, it will resolve my concern.

    Thanks,
    Rahul D

    ------------------------------
    rahul dhiman
    ------------------------------