Details

This atomic belongs to the Cisco XDR: Analytics atomic group.

Searches for detections in Cisco XDR.

Target: Query APIs

Steps:

  • Search detections
  • Check if the search was successful (if not, end the workflow)
  • Extract the search results
  • Check if there's a next page (if there is, update the output variable)
  • Set the output variables

More information about this API: https://queryservice.us.security.cisco.com/swagger-ui#/Detections/get-detections-search

About
Authorship
Cisco Managed