Intezer is an autonomous SOC solution that can help you reduce risk through genetic malware analysis.
Torq enables quick and easy integration with Intezer, so you can automate anything and everything within moments. Torq's public Intezer Steps include:
Create Alert Feedback
List Alerts
Get Alert
Submit Activity Feedback
+8 more...
If you don't see a Step you need, you can create your own in various ways, such as using the Send an HTTP Request Step or Torq’s Step Builder, and share it across your organization.
Use Intezer to Trigger Workflows in Torq
Step One: Create an Intezer Trigger Integration in Torq
Add the Integration: Navigate to Build > Integrations > Triggers > Intezer and click Add Instance.
Configure the Integration: Enter a unique and meaningful name.
Finalize: Click Add and Copy the generated endpoint. You will need the URL for the webhook.
Step Two: Add the Integration in Intezer
Open Intezer: Log in to Intezer and navigate to Settings > Notifications and Outbound Webhooks > Autonomous SOC Webhooks and click Create webhook channel.
Create the Webhook:
Enter a meaningful channel name.
Select the Alert entity type.
Select all triggers.
Paste the Torq endpoint URL you copied earlier.
Enable Should verify SSL.
Enable Include raw alert.
Finalize: Click Create.
(Optional) Manually Trigger an Alert: On the relevant alert, click Actions and then Resend escalation.
Now that you've successfully created an Intezer Trigger, you can build your first Intezer-initiated Workflow!
In Torq, go to Build > Workflows > Create a Workflow > New Blank Workflow, and select the Trigger type: Integrations > Intezer. Find your new Trigger, and automate away!
Use Intezer Steps in Torq
Step One: Create an Intezer API Key
Open Intezer: Navigate to Settings > General > API Key.
Generate the Key: Click to create an API key.
Finalize: Copy the key to save it for later.
Step Two: Create an Intezer Steps Integration in Torq
Navigate to the Integration: Go to Build > Integrations > Steps > Intezer and click Add Instance.
Configure the Integration:
Give the integration a unique and meaningful name.
Paste the API key that you copied earlier.
Finalize: Click Add.
Templates
Now that you've added your integrations, check out these specially crafted templates by Torq's security experts. Visit Torq's template library for more.