SentinelOne integrates with ServiceNow to unify IT and security

SentinelOne, an autonomous cybersecurity platform company, has announced the SentinelOne App for ServiceNow Security Incident Response (SIR). The integration unites security and IT teams for more effective incident response.

  • 2 years ago Posted in

With SentinelOne integrated directly into ServiceNow®, joint customers can use the ServiceNow platform to triage threats. The integration helps security and IT teams accelerate a coordinated, comprehensive, and automated incident response plan across endpoint and cloud environments. The app is available via the SentinelOne Singularity Marketplace and the ServiceNow® Store.

 

“The industry is under constant attack every day, as organisations grapple with vulnerabilities like log4j. Having enterprise-wide visibility and protection from SentinelOne Singularity helps our team understand the potential impact in just a few clicks. We use ServiceNow as our incident management and workflow automation platform – together our team has a single pane of glass for incident collaboration to mitigate threats in real-time.” – Identity and Endpoint Security Architect, Global Manufacturer

 

As ransomware and other forms of malware become increasingly prevalent, both IT and security teams need to operate in lockstep to prevent attacks. Unfortunately, many enterprises rely on numerous unconnected tools to operate cybersecurity programmes. The resulting inefficiency and alert fatigue lead to unnecessary cyber incidents posing enterprise risk. XDR solutions change the paradigm, reframing cybersecurity as a data and workflow problem in need of automation.

 

The SentinelOne App for ServiceNow® Security Incident Response instantly syncs threats from SentinelOne into the ServiceNow Incident Response module for a unified security programme. Within ServiceNow®, an incident responder can view all relevant incident details around the threat, including incident status and threat notes, as well as any additional context or notes created within either platform. When the incident responder determines that corrective action needs to occur, ServiceNow® can trigger automated response actions in SentinelOne to kill, quarantine, remediate or even roll back any potential effects from the threat.

 

“Streamlining threat investigation, response, and remediation workflows leads to significant risk reduction,” said David Baldwin, Product Director, Ecosystem, SentinelOne. “Combining SentinelOne with ServiceNow gives defenders and incident responders the workflows they need to improve remediation across security and IT domains.”

New Barracuda report explores why just 43% of organizations surveyed have confidence in their...
Zero-trust networks deployable, at scale, in as little as 6 minutes, addresses current industry...
RAGroup increases activity by over 300% since its last known attacks in December 2023, entering the...
Bitdefender has launched Bitdefender Voyager Ventures (BVV), a new investment initiative dedicated...
Coveware by Veeam will bring 'industry-leading' cyber-extortion incident response services and...
Zscaler has released the Zscaler ThreatLabz 2024 Phishing Report, which analyzes 2 billion blocked...
Thales has released the 2024 Imperva Bad Bot Report, a global analysis of automated bot traffic...
Egress has launched its third Phishing Threat Trends Report 2024, detailing key trends, new data,...