Document toolboxDocument toolbox

Devo SOAR

Devo SOAR is an integrated automation solution for security operations, which helps cyber analysts reduce investigation and threat detection times by easily capturing and automating the expertize, context, and processes specific to their IT environment.

Devo SOAR takes event data ingested from your security information and event management (SIEM) environment and applies intelligent process automation to identify and score events according to their potential severity. After the process flow, which is designed as a playbook in Devo SOAR, the results become available for intelligent threat detection on an ongoing basis.

Beginning with notable events from your SIEM environment, Devo SOAR processes the data, leveraging the analyst's expertise along with information from web security services to produce a score for each event. The scored events that meet a severity threshold are then provided back to your SIEM system along with an explanation that let you focus on the events that are most likely to require attention.

Explore our dedicated help resources to answer any questions you might have.