Skip to technology filters Skip to main content
Dynatrace Hub

Extend the platform,
empower your team.

Popular searches:
Home hero bg
LevelBlue (AlienVault) OTXLevelBlue (AlienVault) OTX
LevelBlue (AlienVault) OTX

LevelBlue (AlienVault) OTX

Ingest LevelBlue (AlienVault) OTX threat reports.

Extension
Free trialDocumentation
Architectural diagram.Threat reports dashboard.Threat exposure dashboard.Threat exposure dashboard (IOCs).
  • Product information
  • Release notes

Overview

Dynatrace integrates with LevelBlue (AlienVault) Open Threat Exchange (OTX) to enable visibility, unified analysis, and operationalization of open threat intelligence across your monitored environments. The integration collects OTX pulses and their related indicators of compromise, such as IP addresses, domains, URLs, and file hashes, maps them to the Dynatrace Semantic Dictionary, and ingests them as normalized threat report events. This helps security teams investigate threats, correlate external intelligence with monitored environments, and automate response workflows.

Capabilities:

  • Single pane of glass: Ingest threat reports and their indicators of compromise (IOCs) into Dynatrace (powered by OpenPipeline™)

  • Unified threat intelligence: Dynatrace transforms and maps threat reports to a unified format, so you can analyze and process threat exposure the same way across multiple threat intelligence sources (powered by Dynatrace Semantic Dictionary)

  • Runtime exposure analysis: Search and correlate indicators of compromise (IOCs) across all data in Dynatrace — both natively captured and ingested from third-party sources — including logs, traces, and events, to reveal where threats surface in your environment

  • Threat operationalization: Prioritize, visualize, and automate proactive emerging-threat exposure analysis and remediation with runtime context

Use cases

  • Overview: Visualize and report your current threat exposure and trends across your threat intelligence sources with ready-made Dashboards.

  • Runtime insights: Connect threat indicators of compromise (IOCs) to Dynatrace native apps to reveal where external threats intersect with your monitored environment, using Distributed Tracing, Logs, Vulnerabilities, and Threats & Exploits.

  • Automation: Drive proactive threat remediation and create notifications and tickets for critical threats with Workflows.

  • Investigation: Use threat reports as an additional dimension for threat hunting and incident forensics with Security Investigator.

Get started

For instructions, go to Ingest LevelBlue (AlienVault) OTX threat reports.

Details

LevelBlue (AlienVault) OTX integration comes with a couple of ready-made documents:

  • Emerging threat intelligence reports - Overview of the ingested threat intelligence reports and their indicators of compromise.
  • Threat exposure analysis - Analysis of a selected threat intelligence report against your runtime environment.
Dynatrace
DocumentationMore Information
By Dynatrace
Dynatrace support center
Subscribe to new releases
Copy to clipboard

Related to LevelBlue (AlienVault) OTX

ActiveGate logo

ActiveGate

Route traffic, monitor clouds and remote technologies & run Synthetic monitors.

Dashboards logo

Dashboards

Transform complex data into clear visualizations with custom dashboards.

OpenPipeline logo

OpenPipeline

Configure ingest, processing, and persistence of data sent to Grail.

Full version history

To have more information on how to install the downloaded package, please follow the instructions on this page.
ReleaseDate

Full version history

What's new: - Initial release of integration.

Dynatrace Hub
Hub HomeGet data into DynatraceBuild your own app
Dynatrace Intelligence - Agentic Operations SystemThe Dynatrace Agentic AI ecosystem
All (914)Log Management and AnalyticsKubernetesAI and LLM ObservabilityInfrastructure ObservabilitySoftware DeliveryApplication ObservabilityBusiness ObservabilityDigital Experience
Filter
Type
Built and maintained by
Deployment model
SaaS
  • SaaS
  • Managed
Partner FinderBecome a partnerDynatrace Developer

Application Security

Scale your DevSecOps with our unique approach to securing clould-native applications at runtime combined with intelligent automation.

Get started with these essentials

Vulnerabilities logo

Vulnerabilities

Detect and prioritize vulnerabilities to improve your environment's security.

Security Posture Management logo

Security Posture Management

Detect, prioritize, and remediate security and compliance findings with SPM.

Threats & Exploits logo

Threats & Exploits

Understand, triage, and investigate detection findings and alerts.

Investigations logo

Investigations

Fast and precise incident response on Grail data with DQL queries.

Real-time vulnerability detection at runtime

Get continuous monitoring of third-party, code-level & runtime vulnerabilities.

Vulnerabilities logo

Vulnerabilities

Detect and prioritize vulnerabilities to improve your environment's security.

Continuous Security Posture Management

Simplify compliance monitoring with pre-built policies for CIS, DORA, DISA STIG, and more, saving time and reducing complexity.

Security Posture Management logo

Security Posture Management

Detect, prioritize, and remediate security and compliance findings with SPM.

Protect your environment right when attacks happen

Detect and block the most severe attacks without affecting critical processes.

Threats & Exploits logo

Threats & Exploits

Understand, triage, and investigate detection findings and alerts.

Detect, investigate and respond to threats

Investigate and respond to cloud security incidents with powerful analysis tools

Investigations logo

Investigations

Fast and precise incident response on Grail data with DQL queries.

Threat intelligence ingest & enrichment

Ingest threat reports and enrich observables with threat intelligence integrations.

Security Enrichment logo

Security Enrichment

Connect any HTTP-based threat intelligence source to enrich observables.

AbuseIPDB logo

AbuseIPDB

Enrich observables with threat intelligence from AbuseIPDB.

VirusTotal logo

VirusTotal

Enrich observables with threat intelligence from VirusTotal.

CrowdStrike logo

CrowdStrike

Ingest CrowdStrike detection findings, threat reports, and audit logs.

LevelBlue (AlienVault) OTX logo

LevelBlue (AlienVault) OTX

Ingest LevelBlue (AlienVault) OTX threat reports.

Security findings ingest

Ingest detection, vulnerability, and compliance findings, as well as security scan events, and audit logs from DevSecOps product integrations.

See more (17)
OCSF logo

OCSF

Ingest security findings in Open Cybersecurity Schema Framework (OCSF) format.

Amazon ECR logo

Amazon ECR

Ingest Amazon Elastic Container Registry vulnerability findings and scan events.

Google Artifact Registry logo

Google Artifact Registry

Ingest Google Artifact Registry vulnerability findings.

AWS Security Hub logo

AWS Security Hub

Ingest AWS Security Hub vulnerabilities, detections, and compliance findings.

Microsoft Defender for Cloud logo

Microsoft Defender for Cloud

Ingest Microsoft Defender for Cloud security findings and scan events.

Tenable logo

Tenable

Ingest Tenable vulnerability findings, scan events, and audit logs.

Security logs ingest

Ingest logs from security-related products.

See more (2)
Akamai logo

Akamai

Ingest logs and security events from Akamai products.

CyberArk logo

CyberArk

Ingest CyberArk audit logs via SIEM integration for reporting and analysis.

Okta logo

Okta

Ingest Okta audit logs via the System logs API.

AWS Web Application Firewall (WAF) logo

AWS Web Application Firewall (WAF)

Web application firewall that lets you monitor the HTTP(S) requests.

Azure logs logo

Azure logs

Get insights from Azure logs with Log Management and Analytics.

Amazon API Gateway logo

Amazon API Gateway

Service for developers to create, publish, maintain, monitor, and secure APIs.

More resources

GitHub Copilot Coding Agent logo

GitHub Copilot Coding Agent

Automate vulnerability remediation and boost developer productivity.

GitHub Copilot Custom Agent logo

GitHub Copilot Custom Agent

Automate your development workflows with specialized agent definitions.

Are you looking for something different?

We have hundreds of apps, extensions, and other technologies to customize your environment

Extend your knowledge

Learn the Dynatrace Query Language

Learn the Dynatrace Query Language

Explore data, discover patterns, anomalies and outliers, and create statistical modeling with DQL, our powerful query language.
Learn DQL
Solve security issues with custom apps

Solve security issues with custom apps

Dynatrace Developer makes it easy to create custom apps for your organization. Start with one of our templates or use your own code.
Build apps
Skill up with on-demand courses

Skill up with on-demand courses

Go to Dynatrace University for focused courses and learning paths -- from platform basics to key certifications.
Build skills