Welcome to the web page for Microsoft Azure Sentinel to ConnectWise Integration!
The intent of this project was to integrate Microsoft Azure Sentinel and ConnectWise Manage, two leading platforms at the enterprise level. Prior to this project, an integration between these two systems did not exist.
The integration provides a solution to the time-consuming process of manually entering incident data into service tickets.
Our client, Cybriant, utilizes Microsoft Azure Sentinel to detect and analyze security incidents. To manage these incidents, Cybriant needed to manually transfer data collected into ConnectWise Manage, the platform Cybriant utilizes to manage incident tickets internally. Using Logic Apps, our team created an integration solution to aid Cybriant with this time-consuming process. Once incidents are detected in Sentinel, our integration solution automatically triggers the creation of a ticket containing important incident information in ConnectWise. When the ticket is handled or closed in ConnectWise, our integration tool communicates with Sentinel to modify or close this ticket. Key Vaults are used to provide a central location to update security keys. Our integration solution permits security, precision, and efficiency for our client.
For each incident, Cybriant analysts needed to spend 5-8 minutes entering incident data into tickets. Analysts may face hundreds of incidents during their workday. Entering this data into tickets takes away time the Cybriant team could spend analyzing incidents, which increases the risk of breaches not being identified quickly.
Provide our client with a tool to automate ticket creation and decrease duplicate work.
Create an efficient and sustainable integration tool between Microsoft Azure and ConnectWise Manage.
Kennesaw State University College of Computing and Software Engineering
Advisor: Dr. Reza Parizi
Client: Cybriant
Learn more about our team members by visiting our About Us page!