41+ IntegrationsOne Platform

Connect your entire security stack to TIDALBAY. Aggregate signals from identity providers, email security, endpoints, and more for comprehensive human risk visibility.

41+

Integrations

8

Categories

< 5 min

Avg setup time

API-first

Architecture

Identity & Access

Connect your identity providers to monitor authentication events, MFA status, and risky sign-ins.

Okta

Single sign-on, MFA events, and user lifecycle management

SSO eventsMFA statusRisk signals+1 more

Microsoft Entra ID

Azure Active Directory sign-ins, risky users, and conditional access

Sign-in logsRisky users APIConditional access+1 more

Google Workspace

Google login events, suspicious activity, and admin actions

Login eventsSuspicious activityAdmin audit logs+1 more

OneLogin

Identity events and access management integration

Authentication eventsRisk scoresUser management

Ping Identity

Enterprise identity management and access events

SSO eventsMFA eventsRisk signals

Duo Security

Multi-factor authentication events and device trust

MFA logsDevice trustPush notifications+1 more

Email Security

Integrate with email security tools to track phishing clicks, threat detections, and user reports.

Microsoft 365

Safe Links, Safe Attachments, and threat protection events

Safe Links clicksThreat detectionQuarantine events+1 more

Google Workspace Email

Gmail security events and phishing detection

Phishing detectionSpam eventsDLP alerts

Proofpoint

Targeted attack protection and email threat events

TAP eventsClick trackingThreat forensics+1 more

Mimecast

Email security gateway events and threat protection

URL protectionAttachment protectImpersonation alerts

Abnormal Security

Behavioral email security and account takeover prevention

BEC detectionAccount takeoverVendor fraud

Cofense

Phishing simulation and threat reporting

Simulation resultsReporter eventsThreat intelligence

Endpoint Security

Aggregate endpoint security events including malware detections, policy violations, and device compliance.

CrowdStrike

Endpoint detections, policy violations, and device health

DetectionsPolicy violationsDevice compliance+1 more

Microsoft Defender

Defender for Endpoint alerts and device compliance

Threat alertsDevice complianceVulnerability status

SentinelOne

Autonomous endpoint protection events

Threat eventsPolicy violationsDevice control

VMware Carbon Black

Endpoint detection and response events

Threat alertsBehavioral analysisLive response

Sophos

Endpoint protection and XDR events

Threat eventsWeb controlDevice compliance

Palo Alto Cortex XDR

Extended detection and response events

XDR alertsBehavioral analyticsIncident response

Cloud Platforms

Monitor activity across cloud platforms and SaaS applications for comprehensive visibility.

Amazon Web Services

CloudTrail events and IAM activity

CloudTrailIAM eventsGuardDuty findings

Microsoft Azure

Azure activity logs and security center alerts

Activity logsSecurity CenterAzure AD logs

Google Cloud Platform

Cloud audit logs and security command center

Audit logsSecurity findingsIAM events

Salesforce

Login history and event monitoring

Login eventsData export eventsAPI usage

Box

File activity and collaboration events

File eventsSharing activityAccess logs

Dropbox Business

Team activity and file sharing events

File activitySharing eventsAdmin events

Slack

Workspace activity and DLP events

Login eventsFile sharingChannel activity

Zoom

Meeting security and user activity

Meeting eventsRecording accessUser activity

HR Systems

Sync employee data from HR systems to maintain accurate identity records and organizational context.

Workday

Employee lifecycle events and organizational data

New hiresTerminationsRole changes+1 more

BambooHR

HR data sync and employee lifecycle

Employee dataLifecycle eventsOrg hierarchy

ADP

Workforce management and employee data

Employee syncOrg dataLifecycle events

Namely

HR platform integration for employee data

Employee dataDepartment infoManager hierarchy

Rippling

Unified HR platform with device management

Employee syncDevice dataApp access

Learning Management

Connect with learning management systems to track training completion and compliance status.

Cornerstone OnDemand

Learning management system integration

Course completionAssignment syncProgress tracking

SAP SuccessFactors

Enterprise learning management

Training recordsCompliance trackingAssignment sync

Workday Learning

Workday learning module integration

Course assignmentsCompletion trackingCompliance

Ticketing & ITSM

Integrate with ITSM platforms to automate ticket creation and track remediation workflows.

ServiceNow

IT service management and security operations

Incident creationCMDB syncSecOps integration

Jira Service Management

IT service desk and incident management

Ticket creationWorkflow automationSLA tracking

Zendesk

Help desk and customer service integration

Ticket creationAgent notificationsAutomation

SIEM & SOAR

Forward events to your SIEM and trigger automated responses through SOAR playbooks.

Splunk

Security information and event management

Event forwardingDashboard integrationAlerting

Microsoft Sentinel

Cloud-native SIEM and SOAR

Log forwardingPlaybook triggersIncident sync

Palo Alto XSOAR

Security orchestration and automation

Playbook integrationIncident enrichmentAutomation

Elastic Security

Unified SIEM, endpoint, and cloud security

Event forwardingDetection rulesCase management

Don't See Your Tool?

TIDALBAY's API-first architecture makes it easy to build custom integrations. Our connector SDK and webhook support enable integration with any security tool.

Ready to connect your security stack?

See how TIDALBAY can unify signals from across your organization.