engineering·Independent✓ Verified

Automated Security Alert Analysis with Sophos, Gemini AI, and VirusTotal

How It Works

About

How It Works This workflow automates the analysis of security alerts from Sophos Central, turning raw events into actionable intelligence. It uses the official Sophos SIEM integration tool to fetch data, enriches it with VirusTotal, and leverages Google Gemini to provide a real-time threat summary and mitigation plan via Telegram. Prerequisite (Important): This workflow is triggered by a webhook that receives data from an external Python script. You must first set up the Sophos-Central-SIEM-Int

Tags

Pricing

Free

0
Visit website ↗

Marketplace

Independent

Category

engineering

More like this

Browse engineering agents →