Skip to main content

Fetch All Violations - Securonix

This Playbook is part of the Securonix Pack.#

Supported versions

Supported Cortex XSOAR versions: 6.5.0 and later.

Gets a list of violations with pagination using queryId parameter.

Dependencies#

This playbook uses the following sub-playbooks, integrations, and scripts.

Sub-playbooks#

  • Fetch Violations - Securonix

Integrations#

This playbook does not use any integrations.

Scripts#

  • DeleteContext
  • GetTime

Commands#

  • setIncident

Playbook Inputs#


NameDescriptionDefault ValueRequired
fromStart date/time for which to retrieve activity data (in the format MM/dd/yyyy HH:mm:ss).Optional
toEnd date/time for which to retrieve activity data (in the format MM/dd/yyyy HH:mm:ss).Optional
queryFree-text query. For example, query="resourcegroupname=WindowsSnare and policyname=Possible Privilege Escalation - Self Escalation".Optional

Playbook Outputs#


There are no outputs for this playbook.

Playbook Image#


Fetch All Violations - Securonix