
Automated Defense
Data can be fetched or forwarded in CEF, CSV with syslog header and JSON format. Mandiant Automated Defense supports straight CEF and CEF forwarded from StreamSets. Supports JSON fetched from Palo Alto Networks Cortex Data Lake and another variation of JSON in logstash from Elasticsearch.