Skip to content

AlertEntity

SIEM Integration API schema.

This model wraps up an Alert. This contains various fields that contain information regarding the alert that was generated.

Fields

created_atstring
The date at which the alert was created.
customer_idstring
The unique identifier of the customer linked with this record.
dataobject
descriptionstring
The description of the alert that was generated.
event_service_event_idstring
The Event Services event id.
idstring
Identifier for the alert.
infoobject
locationstring
The location captured for this record.
severitystring
The severity for this alert.
Must be one of: LOW, MEDIUM, HIGH.
sourcestring
Describes the source from alert was generated.
threatstring
The name of the threat responsible for the generation of alert.
threat_cleanableboolean
typestring
Describes the type of the device on which alert was generated.
whenstring
The date at which the alert was created.