FortiSIEM
Use FortiSIEM v2 to fetch and update incidents, search events and manage watchlists of FortiSIEM.
Search and update events of FortiSIEM and manage resource lists.
Use FortiSIEM v2 to fetch and update incidents, search events and manage watchlists of FortiSIEM.
Use FortiSIEM v2 to fetch and update incidents, search events and manage watchlists of FortiSIEM.
| Name | Description |
|---|---|
FortiSIEM v2 |
| Name | Description |
|---|---|
FortiSIEM Resolution Status | |
FortiSIEM Incident First Seen | |
FortiSIEM Incident ID | |
FortiSIEM Incident Report Device Name | |
FortiSIEM Event Type | |
FortiSIEM Status | |
FortiSIEM Attack Tactics | |
FortiSIEM Incident Last Seen | |
FortiSIEM Destination User | |
FortiSIEM Incident Severity | |
FortiSIEM Incident Reporter IP | |
FortiSIEM Events Count | |
FortiSIEM Events |
| Name | Description |
|---|---|
FortiSIEM |
| Name | Description |
|---|---|
| FortiSIEM v2 | Use FortiSIEM v2 to fetch and update incidents, search events and manage watchlists of FortiSIEM. |
| FortiSIEM | Search and update events of FortiSIEM and manage resource lists. |
| Name | Description |
|---|---|
FortiSIEM incident Layout |
| Name | Description |
|---|---|
| GenericPolling-FortiSIEM | This playbook executes a search query to retrieve FortiSIEM Events. |
| Name | Description |
|---|---|
FortiSIEM v2 |
| Name | Description |
|---|---|
FortiSIEM Incident Reporter IP | |
FortiSIEM Incident Severity | |
FortiSIEM Incident Report Device Name | |
FortiSIEM Incident ID | |
FortiSIEM Event Type | |
FortiSIEM Events Count | |
FortiSIEM Incident Last Seen | |
FortiSIEM Destination User | |
FortiSIEM Resolution Status | |
FortiSIEM Attack Tactics | |
FortiSIEM Status | |
FortiSIEM Incident First Seen | |
FortiSIEM Events |
| Name | Description |
|---|---|
FortiSIEM |
| Name | Description |
|---|---|
| FortiSIEM v2 | Use FortiSIEM v2 to fetch and update incidents, search events and manage watchlists of FortiSIEM. |
| FortiSIEM | Search and update events of FortiSIEM and manage resource lists. |
| Name | Description |
|---|---|
| GenericPolling-FortiSIEM | This playbook executes a search query to retrieve FortiSIEM Events. |
| Pack Name | Pack By |
|---|---|
| Base | By: Cortex XSOAR |
| Common Playbooks | By: Cortex XSOAR |
| Filters And Transformers | By: Cortex XSOAR |
| Pack Name | Pack By |
|---|---|
| Common Types | By: Cortex XSOAR |
| Pack Name | Pack By |
|---|---|
| Filters And Transformers | By: Cortex XSOAR |
| Base | By: Cortex XSOAR |
| Rasterize | By: Cortex XSOAR |
| Aggregated Scripts | By: Cortex XSOAR |
| Cortex REST API | By: Cortex XSOAR |
| Common Playbooks | By: Cortex XSOAR |
| Certification | Certified | Read more |
| Supported By | Cortex | |
| Created | November 9, 2020 | |
| Last Release | October 29, 2025 |

