LookoutMobileEndpointSecurity

Lookout Mobile Endpoint Security (MES) provides visibility and protection against mobile threats with AI-driven mobile security dataset.

Analytics & SIEM · Lookout Mobile Endpoint Security (MES)

Details

IDLookoutMobileEndpointSecurity
ProviderLookout Inc.
CategoryAnalytics & SIEM
From Version8.4.0
Docker Imagedemisto/sse-client:1.0.0.10133006
Supported ModulesAgentix XSIAM

README

Lookout Mobile Endpoint Security (MES) provides visibility and protection against mobile threats with AI-driven mobile security dataset.
This integration was integrated and tested with version v2 of LookoutMobileEndpointSecurity.

Configure Lookout Mobile Endpoint Security Event Collector in Cortex

Parameter Required
Server URL False
Application Key False
Trust any certificate (not secure) False
Use system proxy settings False
Fetch interval in seconds True
Event types to fetch True

Commands

You can execute these commands from the CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.

Configuration parameters

  • server_url — Server URL
  • app_key
  • insecure — Trust any certificate (not secure)
  • proxy — Use system proxy settings
  • fetch_interval — Fetch interval in seconds (required)
  • longRunning — Long Running Instance
  • event_types — Event types to fetch (required)

Commands (0)

This integration defines no commands.

Use this integration to collect events automatically from Lookout Mobile Endpoint Security (MES).
This integration was integrated and tested with version v2 of Mobile Risk API.

### Creating an Application Key

You must create an application key specific to your Lookout tenant to properly authenticate your application. You can do this from the [Lookout Mobile Endpoint Protection Console](https://app.lookout.com/):

1. Log into the Lookout Mobile Endpoint Protection Console as an administrator.
2. In the left navigation bar, navigate to **System** > **Application Keys:**
*NOTE:* If you don’t see the Application Keys tab, contact Lookout Enterprise Support to enable this feature on your tenant.
3. Click **GENERATE KEY**.
Enter a label name and click **Next**.
4. Copy the key from your clipboard into the configuration for your application.
*IMPORTANT:* Copy the generated key to your application immediately as you cannot access the key again after this procedure.