Platform · Integrations
Add to the stack you have. Replace what you no longer need.
Integrations never count toward your licensed asset cap. Connect what helps; the platform works fully on its own in an air-gapped site.
OT sensors you already run
Keep your existing sensors. Synaptic OT ingests their alerts and adds recording, investigation, response and compliance around them.
- Nozomi Networks Alert ingest Available
- Claroty Alert ingest Available
- Dragos Alert ingest In development
SIEM
Send incidents to the SIEM your IT SOC already watches, and use its endpoint data for IT-OT lateral movement checks.
- Splunk Incident forwarding and alert ingest Available
ITSM and notifications
Open tickets and notify on-call staff from playbook steps. Generic JSON webhooks reach other tools.
- ServiceNow Ticket creation Available
- Slack Notifications Available
- Email Notifications Available
- Jira and other ITSM Ticket creation Roadmap
Firewalls
Remediation cards export ready-to-apply rules. Your team reviews and applies them; Synaptic OT never pushes changes.
- Fortinet FortiGate FortiOS CLI export Available
- Cisco ASA ASA CLI export Available
- Palo Alto Networks PAN-OS export Available
- Any other firewall CSV export Available
Threat intelligence
Bring your own intelligence, online or offline.
- STIX / TAXII Allow-listed feed or offline package Available
- CISA CSAF advisories Vulnerability catalogue, shipped offline Available
- MITRE ATT&CK for ICS Coverage mapping and Navigator export Available
Identity
Use your existing identity provider for analyst sign-in.
- SAML 2.0 and OIDC Single sign-on Available
- TOTP Multi-factor authentication Available
Need an integration that isn't listed?
Tell us what you run. We prioritise connectors by what operators in evaluation actually need.