Platform · Integrations
Viktrix sits alongside your existing tooling — not instead of it. Native integrations cover the Microsoft stack, common endpoint platforms, and major firewalls. Open API for anything else.
Supported platforms
Identity & directory
Microsoft Entra ID
Native
Okta
Native
Azure Active Directory
Native
Google Workspace
Via API
Endpoint
Sysmon deployed and tuned during onboarding for deep Windows process telemetry. Agents deploy silently or through your existing RMM.
Microsoft Defender for Endpoint
Native
SentinelOne
Telemetry
CrowdStrike Falcon
Telemetry
Windows / macOS / Linux
Agent MSI/PKG/DEB
Cloud & productivity
Microsoft 365
Native
Exchange Online / SharePoint / OneDrive
Via M365
Microsoft Azure
Native audit & activity logs
AWS & GCP
Cloud workload coverage
Network & firewall
One-click firewall blocks pushed across every connected gateway from a single console.
Palo Alto Networks
Syslog + API
Cisco ASA / FTD
Syslog
Fortinet FortiGate
Syslog
Check Point
Syslog
SIEM & log management
Your existing SIEM is ingested, not replaced — or use Vindex as the analysis layer over it.
Microsoft Sentinel
Native
Elastic SIEM
Via Logstash
Splunk
Via HEC
Datadog
Via API
Ticketing, chat & workflow
Webhook and workflow automation for custom response playbooks. Slack alerts and approvals land where your team already lives.
ServiceNow
Native
Slack
Via webhook
Jira
Via API
PagerDuty
Via webhook
Security tools that demand you rebuild your environment never get deployed. Vindex is designed to slot into what you already run — collect from everywhere, act where it matters, and notify where your team already lives.
Threat intelligence & standards
VirusTotal, AbuseIPDB and additional reputation sources enrich every alert automatically — see threat intelligence.
Detections mapped to MITRE ATT&CK; events normalised to the OCSF open schema, so your data is never trapped in a proprietary format.
Open API
If it's not listed, we can connect it.
The Viktrix API is open and documented. Send telemetry from any source, pull incident data into your own tooling, or build custom integrations with our onboarding team's help.
Enterprise & MSP plans include Tier-3 API access and custom SIEM integration, with white-label reporting for MSPs.
# POST telemetry event
POST /v1/events
Authorization: Bearer vk_live_••••••••
{
'source': 'custom-edr',
'type': 'process.created',
'host': 'WIN-4471',
'timestamp': '2026-06-21T03:41:12Z'
}
→ 202 Accepted · EVT-2026-0621-0044
Don't see your stack? Talk to the integration team — the conversation is usually shorter than you'd expect. Or book a demo to see the platform against your environment.

Ready to close the gap?
Get enterprise-grade protection running in minutes. No disruption, no long contracts, no lock-in.