Elastic × Tines

Integrating Tines and Elastic enhances security operations by automating threat detection and response workflows, leveraging Elastic’s powerful search and analytics capabilities within Tines’ intuitive automation platform.

Pre-built templates

With Tines, you can easily take any action that has a defined API. We've already pre-built some of the most popular ones for you, so you can build quickly.

Update cases
Update case settings
Update Agent in Elastic Fleet
Update a case comment or alert
Search cases
Returns user privileges for the Kibana space
Retrieve the status of prebuilt detection rules and Timelines
Retrieve the status of detection alert migrations
Retrieve a detection rule
Remove Isolation from Host in Elastic Fleet
Reads the alert index name if it exists
Query Elasticsearch
Push a case to an external service
Packetbeat IP and Port Query
Packetbeat DNS Question Query
List all detection rules
List all detection rule tags
List All Agents in Elastic Fleet
List Agent Policies in Elastic Fleet
Isolate Host in Elastic Fleet

Build your own connections

With Tines, you can easily take any action that has a defined API using an HTTP request. To build even more quickly, copy a cURL command and paste it into the storyboard.

cURL request

curl -v -X GET --location "https://api.nasa.gov/neo/rest/v1/neo/browse?api_key=DEMO_KEY" -H 'Content-Type: application/json'

Paste in your Tines story

Trusted by industry innovators

CanvaCode42CoinbaseElasticGitLabIntercom
MarsMcKessonOak Ridge National LaboratoryOpenTableSnowflakeReddit

Built by you,
powered by Tines

Already have an account? Log in.