You could look at pxGrid (Platform Exchange Grid) this provides APIs for integrating security solutions. Third party solutions like Zeek too.
Many network forensics platforms like Wireshark, NetworkMiner, and others provide REST APIs that you can use for remote triggering of packet captures or filtering based on specific events or even integration with security analytics platforms etc…
Please mark this as helpful or solution accepted to help others
Connect with me https://bigevilbeard.github.io