INTEGRATIONS & ECOSYSTEM
Arcanna integrates seamlessly within SIEM, SOAR, EDR, NDR, XDR, Agentic Systems, and LLM-enabled SOC workflows.

Chronicle
Uses Chronicle detections and context to power governed decisions and workflows.

QRadar
Connects QRadar events and offenses to Arcanna for faster, higher-quality triage.

Splunk
Brings Splunk alerts, fields, and context into Arcanna for consistent, governed decisions.

CrowdStrike Falcon
Enriches Arcanna decisions with Falcon detections and endpoint insights.

Swimlane
Executes safe, governed actions in Swimlane based on Arcanna's decisions.

AlienVault
Enriches alerts with AlienVault OTX threat indicators for better triage outcomes.

Snort
Uses Snort signatures and alerts as additional signal for decision accuracy.

MalwareBazaar
Provides malware intelligence to strengthen Arcanna's decision rationale.

Cortex XSOAR
Orchestrates XSOAR actions with Arcanna's human-aligned decision outputs.

FortiSOAR
Executes FortiSOAR playbooks using Arcanna's explainable, governed decisions.

Microsoft Sentinel
Feeds Sentinel with decision outputs and orchestrates SOAR actions safely.

VirusTotal
Adds file, URL, and hash intelligence to support explainable SOC decisions.

DFIR-IRIS
Pushes evidence and decision context to DFIR-IRIS for streamlined investigations.

OTOBO
Automates case creation and updates in OTOBO based on Arcanna decisions.

Rapid7
Triggers Rapid7 automation workflows using Arcanna's high-confidence decisions.

Sumo Logic
Ingests alerts and context from Sumo Logic to drive accurate, explainable SOC decisions.

ThreatConnect
Passes enriched context and decisions into ThreatConnect for coordinated actions.

Slack
Sends decision summaries and investigation context directly into Slack channels.

TheHIVE
Creates and updates TheHIVE cases based on Arcanna's governed decisions.

Cisco Umbrella
Adds Umbrella DNS and network insights to strengthen decision context.

Elasticsearch
Pulls normalized Elasticsearch events to support accurate SOC decisioning.

Abuse.ch
Enriches decisions with Abuse.ch threat feeds for faster, safer triage.

OpenSearch
Uses OpenSearch logs and queries as decision context across SOC workflows.