Threat Intelligence Security Center Catalog
The Threat Intelligence Security Center Catalog is a curated list of Threat Intelligence feeds and enrichment integrations available in the application. You can enable them after adding the required information and schedule the feed to automatically ingest Threat Intelligence data on a set frequency.
As a sn_sec_tisc.admin, you can search and edit existing source configurations, enable or disable them, and delete configurations from the Catalog. When you add a data source to the Catalog, it appears as a new configuration card.
Role required:
- sn_sec_tisc.admin (create/update)
- sn_sec_tisc.analyst (read)
Image omitted: tisc-catolog.png
TISC Catalog
TISC Catalog
Note: The cards on the catalog are differentiated by their label at the top of the card: Threat Feed/Enrichment.
Actions on the Catalog view
You can perform the following actions:
| Action | Description |
|---|---|
| Filter items | Use this dropdown menu to filter feeds and integrations based on their current state. You can filter based on the following states:- All: Displays all the feeds and integrations on the page. This is the default option. - Enabled: Displays all the feeds and integrations that are in an enabled state. - Disabled: Displays all the feeds and integrations that are in an inactive state. - Draft: Displays all the feeds and integrations that are in a draft state. |
| Refresh list | Use the refresh icon Image omitted: enrich-refresh-icon.png Refresh to refresh the list. |
Image omitted: enrich-sort-icon.png Sort | Use this action to sort all the feeds and integrations based on the following:- Last Modified (recent) - Last Modified (oldest) - Name (A-Z) - Name (Z-A) |
| Search in catalog | Use this action to search for feeds and integrations based on the name and description within the catalog. |
Parent Topic:Integrate
Related topics