Analyze JIRA tickets and extract relevant IOCs to run Sumologic queries. The output of the Sumologic queries are possible users who triggered the alert. Message those users on slack asking them if they were the users who triggered the alert, and to confirm their identity using Okta 2FA.
Jamison Bigham
How it works
Import this story to your tenant, from where you can adapt it to meet your unique needs.
Import