Cisco Multicloud Defense User Guide

PDF

Cisco Multicloud Defense User Guide

Alert Destinations / SIEMs

Configure Multicloud Defense to send alerts to platforms such as Datadog, Microsoft Sentinel, PagerDuty, ServiceNow, Microsoft Teams, Webex, Splunk, and Slack. Integrate with SIEMs and set up automated notifications for critical events. Ensure timely responses to security incidents.


A service rule that includes an alert destination typically defines how and where notifications or alerts should be sent when certain conditions are met. Service rules monitor specific conditions or events, such as system thresholds being exceeded, errors occurring, or security incidents being detected and when the predefined conditions are met, the service rule triggers an alert. Alerts are sent to web services or applications via webhooks for further processing or automation. This ensures that critical events do not go unnoticed.