Azure-Sentinel/Playbooks/Enrich-SentinelIncident-Ris...
9b b28b044a1d Updated playbooks to account for bug in LogicApps 2020-07-17 17:35:59 -04:00
..
azuredeploy.json Updated playbooks to account for bug in LogicApps 2020-07-17 17:35:59 -04:00
readme.md Oversight on the README format for the deploy to Azure process. 2020-06-18 09:37:45 -04:00

readme.md

Enrich-SentinelIncident-RiskIQ-IP-SSL-Certificate

author: Brandon Dixon, RiskIQ

This playbook uses the RiskIQ Intelligence connector to automatically enrich incidents generated by Sentinel with SSL certificates. You need a valid subscription in order to use the connector and playbook. To learn more about the service and request a trial key, see the API documentation.