Integrations

Works with your stack.

No rip-and-replace. LexChain connects to your existing security tools and starts correlating immediately.

SIEM

Security Information & Event Management

splunk >

Splunk

Full integration with Splunk Enterprise and Splunk Cloud. Ingest alerts and enrich with context.

Elastic

Elastic Security

Native support for Elastic SIEM detections and alerts via API integration.

Microsoft Sentinel

Microsoft Sentinel

Direct connection to Azure Sentinel incidents and entity data.

EDR / XDR

Endpoint Detection & Response

CROWDSTRIKE

CrowdStrike Falcon

Ingest detections and behavioral telemetry from Falcon platform.

SentinelOne

SentinelOne

Full threat and storyline data ingestion via Singularity API.

Carbon Black

VMware Carbon Black

Alert and watchlist data from Carbon Black Cloud.

Identity

Identity & Access Management

okta

Okta

Authentication events, user context, and suspicious activity alerts.

Azure AD

Azure Active Directory

Sign-in logs, risky users, and identity protection alerts.

Duo

Duo Security

MFA authentication logs and security events.

Cloud

Cloud Security & Infrastructure

AWS

Amazon Web Services

CloudTrail, GuardDuty, and Security Hub findings integration.

Google Cloud

Google Cloud Platform

Security Command Center and Cloud Audit Logs integration.

Microsoft 365

Microsoft 365

Office 365 audit logs and Microsoft Defender alerts.

Custom Integrations

Don't see your tool?

LexChain provides a comprehensive REST API for custom integrations. Ingest alerts from any source using our standardized schema.

REST API
Webhook Support
Secure Authentication
Request API Docs

Ready to connect?

Book a demo and we'll set up integrations with your stack in minutes.

Book a Demo