The Universal Cloud Connector, which is designed to enable security teams to more easily ingest data from a wide range of REST API cloud-based applications and services for enhanced visibility. The Universal Cloud Connector includes a new Universal Cloud REST API Protocol helps to create log sources to collect data from REST API compatible data sources that aren't currently supported.
Advantaged of using Universal Cloud REST API Protocol :
1. Quick and easy connect to REST API based cloud applications and services.
2. Leverage pre-configured workflows for data sources or create your own.
3. Tailor the data for your specific use cases.
4. Augment threat detection abilities.
Agenda :
Strategy Overview
Universal Cloud REST API Broad View
The Breakdown
Installing Universal Cloud REST API PROTOCOL
IBM Security Intelligence GitHub
Use Case : Ingesting Events from Duo End point
Universal Cloud REST API Terminology
Log Source Configuration
Event Mapping
Malicious Investigation using QRadar Offense.
for any queries contact:
Ankitha Patil : +91-9860575559 : ankipati@in.ibm.com