Sophos Endpoint Protection
  • 23 Nov 2024
  • 1 Minute to read
  • Contributors
  • Dark
    Light

Sophos Endpoint Protection

  • Dark
    Light

Article summary

Sophos Intercept X Endpoint delivers protection, stopping advanced attacks before they impact your systems. Powerful endpoint and extended detection and response (EDR/XDR) tools let your organization hunt for, investigate, and respond to suspicious activity and indicators of an attack.

Integration Method: API

Tables: Detection Finding

Sophos Endpoint Protection Configuration

Before configuring the data source in the DataBee UI, you need to set up an API client in the Sophos Central dashboard to obtain the necessary credentials. Follow these steps:

  1. Sign in to the Sophos Central Dashboard.

  1. Click on the General Settings option in the menu bar at the top right corner

  1. On the General Settings window, click on the API Credentials Management option.

  1. On the API Credentials Management window select Add Credentials.

  1. Add the Credential Name, Description(optional) and select Service Principal Super Admin in the Role dropdown, then click on Add.

  1. Under API credential summary you can find your Client ID and Client Secret. 

DataBee Configuration

  1. Login to the DataBee console, navigate to Data>Datasource and click on Add new Datasource.

  1. Search for Sophos Endpoint Protection and select it.

  1. Click on API Ingest.

  1. Enter the required details in the form, and click on Next.

  1. In the configuration details page, enter the following

    • Authorization Method: OAuth2

    • Client Key: Paste the Client ID generated earlier

    • Client Secret: Paste the Client Secret generated earlier

    • Click on Submit.


Was this article helpful?

What's Next
Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.
ESC

Eddy AI, facilitating knowledge discovery through conversational intelligence