Skip to content

Threat Hunting as a Service ​

App in CyberLegion Managed Shield · Managed Security

Threat Hunting as a Service is an app in the Managed Shield solution on CyberLegion.

Start with Threat Hunting as a Service

Use your tenant account to open it, sign in, or request access. API calls use the same governed execution endpoint as the console.

API endpoint
POST https://api.dev.cyberlegion.io/execute
Authorization: Bearer <YOUR_TENANT_API_TOKEN>
Content-Type: application/json

{
  "app": "managedshield-thaas",
  "input": {}
}

How To Use It ​

Threat Hunting as a Service is delivered as a CyberLegion app inside the Managed Shield solution: a packaged capability your team uses through the console, in chat, or from the public API. Availability follows your tenant plan, roles, workspace policy, and configured permissions.

Chat ​

Work with Threat Hunting as a Service conversationally in the CyberLegion console. Ask in natural language, review the plan, and keep results in your workspace history. Use the action panel above to open this app in the console.

API ​

Drive Threat Hunting as a Service from your own systems through the governed CyberLegion execution endpoint. The action panel above shows the current environment's endpoint and request shape; the app id managedshield-thaas selects this app. Use your tenant API token and keep it in your own vault or runtime environment.

Every call is authenticated, authorized, and audited within your tenant.

Use the action panel above for sign up, sign in, the console, the website catalog, support, and the API endpoint. Those links resolve from the active docs environment.

Need help?

Use the Support action above, see the CyberLegion Managed Shield solution, or browse the full app catalog.