Hello everyone! I’m new to the Cisco XDR platform and I've couple of queries which I've listed below, if someone could help:
1. How can I build integrations within the Cisco XDR platform? I’ve noticed many third-party integrations, such as CrowdStrike, ServiceNow, and Slack. Are these integrations developed and managed by the Cisco XDR team, or can individual developers create their own?
2. I’ve seen that many built-in cisco integrations include dashboard panels and tiles. How does the data comes in cisco XDR and where is it stored? And, how are the tiles rendered from this data? Is there a background query that retrieves and displays this data?
3. Is it possible to create custom tiles in Cisco XDR, similar to how I can create dashboard panels using SPL queries in Splunk?
4. I have endpoint data in third party platform that I would like to send to Cisco XDR to create a custom dashboard for visualization. Is this possible with the platform, or is this platform primarily intended for incident review rather than visualization? Please correct me if I’m mistaken.
Regards,
Aash Shah