Marketplace
Integrations for cloud, ticketing, SIEM and chat
Cloud accounts as data sources, alerts and findings in Jira, Microsoft Sentinel, Teams or via REST API. Every integration is enabled in the marketplace and monitored.
- Jira
- Microsoft Teams
- Slack
- GitHub
- GitLab
- Elastic
- AWS
- Microsoft Azure
- Google Cloud
- Cloudflare
- Hetzner
- Webhook
Visuals show sample data.
- integrations for cloud, SIEM, ticketing and chat
- 20+
- alert types, routed to Jira, Teams or Slack
- 15+
- REST API endpoints with Swagger documentation
- 250+
- matching of new CVEs against your inventory
- Real time
Findings where your team already works
Cloud accounts deliver data. Ticketing, SIEM and chat receive alerts by the policies you define.
Critical vulnerability on the VPN gateway
- Severity
- Critical
- Asset
- vpn.beispiel-gmbh.at
- Team
- IT operations
Open in blacklens.io
CVE-2024-21762, vpn.beispiel-gmbh.at
Open finding
- Assets
- Findings
- Alerts
- Scope
- Reports
- Administration
Visuals show sample data.
A marketplace, not a project
Enter credentials, check the connection, activate. The online status is always visible, so alerts never silently go nowhere.
Visuals show sample data.
Connection check
Credentials and permissions are tested before activation.
Pause without losing anything
Deactivate integrations at any time, the configuration is kept.
Health alerts
Offline integrations appear on the health card and trigger an alert.
All integrations at a glance
Sorted by category, from cloud connectors to single sign-on with Microsoft Entra ID and Google.
Cloud
Amazon Web Services
Microsoft Azure
Microsoft 365
Google Cloud
Cloudflare - Hetzner Cloud
Identity and SSO
Active Directory
Microsoft Entra ID
Google Workspace SSO
Ticketing and development
Jira - ServiceNow
- GitHub
GitLab
SIEM and webhook
Microsoft Sentinel
Elastic Beta- Webhook
Chat and mobile
- Slack
Microsoft Teams - Mobile App (iOS/Android)
API
- REST API
Frequently asked questions
- blacklens.io is available as a solution in the Microsoft Sentinel Content Hub. The solution contains a data connector, an analytics rule and an ARM template for deployment. After installation, alerts and findings are written to your Log Analytics workspace and the analytics rule turns them into Sentinel incidents. Your SOC correlates them with other data sources and handles them in its usual process.
Related solutions
The capabilities on this page are building blocks. This is how customers use them day to day.
Connect blacklens.io to your stack.
All integrations are included in the 14-day trial. We set up the first connection together with you.
- 14 days free, all features
- No credit card required
- We walk you through your first findings