https://catalogartifact.azureedge.net/publicartifacts/firecompass.firecompass-risks-7f5f3f2b-c205-441b-97ee-2b20916f0651/image3_firecompass216x216.png
FireCompass Risks for Microsoft Sentinel
by FireCompass
Just a moment, logging you in...
Ingest validated FireCompass attack surface risk findings into Microsoft Sentinel for correlation an
The FireCompass Risks solution for Microsoft Sentinel ingests risk findings from the FireCompass platform into the FCRisks_CL custom table in your Log Analytics workspace.
FireCompass continuously discovers and validates an organization's external attack surface. Each risk record includes severity, state, affected asset, assessment context, impact and remediation guidance. With this data in Microsoft Sentinel, security teams can:
- Correlate validated exposures with endpoint and network telemetry on the same hosts
- Track the lifecycle of each risk from open to remediated
- Build analytics rules, workbooks and hunting queries on top of FireCompass findings
Solution contents:
- Data Connectors: 1 (FireCompass Risks, Codeless Connector Framework)
Prerequisites:
- An active FireCompass account
- A FireCompass API token
- A Microsoft Sentinel-enabled Log Analytics workspace
At a glance
https://catalogartifact.azureedge.net/publicartifacts/firecompass.firecompass-risks-7f5f3f2b-c205-441b-97ee-2b20916f0651/image0_firecompassscreenshot.png