IBM QRadar SOAR

IBM QRadar SOAR

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
  • 1.  Complete Incidents Dump

    Posted Thu August 01, 2024 01:02 AM

    Hi Team, 

    Is there a way to get the complete incidents from last one year and push it to some DB ensuring the data retention is as per the org policy. 

    We are expecting a feasible and affordable solution and approach for this. idea is to when any one from the organization needs data related to a particular Incident, that should be able to query and fetch the full details of it. 

    It would really help if anyone has done it or any suggestions to it. Thanks in advance. 

    Note : SOAR that I support is SaaS solution not on-prem. 



    ------------------------------
    Regards
    Joshi
    ------------------------------


  • 2.  RE: Complete Incidents Dump

    Posted Thu August 01, 2024 05:31 AM

    you can use data feeder application , not sure if you can use it for SaaS , check for that.



    ------------------------------
    mohamad islam hamadieh
    ------------------------------