Can I integrate Microsoft Sentinel with my existing systems?

Yes. Sentinel can ingest data from Microsoft and third-party sources for unified SIEM and SOAR capabilities.

Popular third-party integrations with Microsoft Sentinel include, but are not limited to:

Security Solutions and Firewalls
  • Palo Alto Networks (firewalls and Prisma Cloud)
  • Cisco (Umbrella, ASA, Meraki, Firepower)
  • Fortinet (FortiGate)
  • Check Point
  • SonicWall
Identity and Access Management
  • Okta
  • Ping Identity
  • Duo Security
Email Security
  • Proofpoint
  • Mimecast
  • Barracuda
Cloud Platform and SaaS
  • AWS CloudTrail, GuardDuty, VPC Flow Logs
  • Google Cloud (GCP) Audit Logs
  • ServiceNow (incident management)
  • Salesforce (audit and activity logs)
Endpoint Detection and Response (EDR)/XDR
  • CrowdStrike Falcon
  • SentinelOne
  • Trend Micro
  • Symantec
Threat Intelligence
  • MISP (Malware Information Sharing Platform)
  • Recorded Future
  • ThreatConnect
  • Anomali