Platform · Integrations

Works with what you already have.

Viktrix sits alongside your existing tooling — not instead of it. Native integrations cover the Microsoft stack, common endpoint platforms, and major firewalls. Open API for anything else.

Supported platforms

MicrosoftAzureOktaGoogleDefenderAzobeSentinelPalo AltoFortinetDefenderSplunkElasticService NowJiraSlackPagerDuty

Identity & directory

microsoft

Microsoft Entra ID

Native

okta

Okta

Native

microsoft

Azure Active Directory

Native

okta

Google Workspace

Via API

Endpoint

Sysmon deployed and tuned during onboarding for deep Windows process telemetry. Agents deploy silently or through your existing RMM.

microsoft

Microsoft Defender for Endpoint

Native

okta

SentinelOne

Telemetry

microsoft

CrowdStrike Falcon

Telemetry

okta

Windows / macOS / Linux

Agent MSI/PKG/DEB

Cloud & productivity

microsoft

Microsoft 365

Native

okta

Exchange Online / SharePoint / OneDrive

Via M365

microsoft

Microsoft Azure

Native audit & activity logs

okta

AWS & GCP

Cloud workload coverage

Network & firewall

One-click firewall blocks pushed across every connected gateway from a single console.

microsoft

Palo Alto Networks

Syslog + API

okta

Cisco ASA / FTD

Syslog

microsoft

Fortinet FortiGate

Syslog

okta

Check Point

Syslog

SIEM & log management

Your existing SIEM is ingested, not replaced — or use Vindex as the analysis layer over it.

microsoft

Microsoft Sentinel

Native

okta

Elastic SIEM

Via Logstash

microsoft

Splunk

Via HEC

okta

Datadog

Via API

Ticketing, chat & workflow

Webhook and workflow automation for custom response playbooks. Slack alerts and approvals land where your team already lives.

microsoft

ServiceNow

Native

okta

Slack

Via webhook

microsoft

Jira

Via API

okta

PagerDuty

Via webhook

Security tools that demand you rebuild your environment never get deployed. Vindex is designed to slot into what you already run — collect from everywhere, act where it matters, and notify where your team already lives.

Threat intelligence & standards

Open schemas, not proprietary lock-in.

VirusTotal, AbuseIPDB and additional reputation sources enrich every alert automatically — see threat intelligence.

Detections mapped to MITRE ATT&CK; events normalised to the OCSF open schema, so your data is never trapped in a proprietary format.

Open API

If it's not listed, we can connect it.

The Viktrix API is open and documented. Send telemetry from any source, pull incident data into your own tooling, or build custom integrations with our onboarding team's help.

Enterprise & MSP plans include Tier-3 API access and custom SIEM integration, with white-label reporting for MSPs.

# POST telemetry event

POST /v1/events

Authorization: Bearer vk_live_••••••••

{

'source': 'custom-edr',

'type': 'process.created',

'host': 'WIN-4471',

'timestamp': '2026-06-21T03:41:12Z'

}

→ 202 Accepted · EVT-2026-0621-0044

Don't see your stack? Talk to the integration team — the conversation is usually shorter than you'd expect. Or book a demo to see the platform against your environment.

Viktrix Logo

Ready to close the gap?

Get enterprise-grade protection running in minutes. No disruption, no long contracts, no lock-in.