Hi Community,
Do we have any or are we planning to develop JIRA application plugin for a SIEM (IBM QRadar in specific). This would include pushing the offences/tickets from SIEM to JIRA application (with all the information), update the tickets back in QRadar and close offences upon closing them in JIRA. This would be really helpful as it could be a one stop working tool for the Security Operations.
Hi, @Chinmay Kulkarni, we create an application -Alert Catcher-, for SIEM and Jira Server integration with such functionality as you ask.
You can create Connections with different systems and Set up the rules for creating [Incidents] by Alerts from SIEM and [Problems] by similar Alerts and assign them to different users for resolving.
Take a look at https://marketplace.atlassian.com/apps/1221707/alert-catcher-consolidate-it-alerts?hosting=server&tab=overview
The data, which pushed by SIEM will be listed in the description field.
I hope, it`s could help, sure, if the question is still relevant.
Regards,
Dmitry
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.