Solution: Cyren-Defender-ThreatIntelligence
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
| Attribute | Value |
|---|---|
| Publisher | Data443 Risk Mitigation, Inc. |
| Support Tier | Partner |
| Support Link | https://www.data443.com |
| Categories | Security - Threat Protection,Security - Threat Intelligence |
| Version | 3.0.0 |
| Author | Data443 Risk Mitigation, Inc. - support@data443.com |
| First Published | 2026-02-17 |
| Last Updated | 2026-05-29 |
| Solution Folder | Cyren-Defender-ThreatIntelligence |
| Marketplace | Azure Marketplace · Popularity: ⚪ Very Low (0%) |
The Cyren Defender Threat Intelligence solution polls the Cyren CCF (Common Connector Framework) threat intelligence feed and pushes STIX-formatted indicators to Microsoft Sentinel's ThreatIntelligenceIndicator table. It uses a Logic App with managed identity, PersistentToken pagination, and enforces strict cost safety parameters (count=1000, queryWindowInMin=360, 6-hour recurrence).
This solution does not include data connectors.
This solution may contain other components such as analytics rules, workbooks, hunting queries, or playbooks.
This solution includes 1 content item(s):
| Content Type | Count |
|---|---|
| Playbooks | 1 |
| Name | Description | Tables Used |
|---|---|---|
| Cyren to Defender TI - Playbook | Polls the Cyren CCF threat intelligence feed and pushes STIX indicators to Microsoft Sentinel via th... | - |
| Version | Date Modified (DD-MM-YYYY) | Change History |
|---|---|---|
| 3.0.0 | 28-04-2026 | Initial release. Logic App workflow with NDJSON payload parsing (payload.identifier, payload.detection), managed identity authentication for Sentinel createIndicator API, null identifier guard, confidence mapping from Cyren risk score. |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊