Dropzone AI Documentation
WebsiteTest Drive
  • Dropzone Documentation
  • Overview
    • Alert Sources
    • Data Sources
    • Communicators
    • On-prem Support - Dropzone Connector
    • Interactive Chat
    • Metrics Guide
  • Dropzone Administraton
    • Team Admin
      • Google Workspace SAML
      • Okta SAML
  • Dropzone Integrations
    • Alert + Data Source Integrations
      • Amazon Web Services (AWS)
        • Cross-Account Access via CloudFormation
        • Cross-Account Access via Console
      • CrowdStrike
      • Datadog
      • Elasticsearch
      • Google Workspace
      • Google GCP
      • Jira
      • Microsoft 365 / Microsoft Defender
      • Palo Alto Networks Firewall
      • Panther
      • SentinelOne
      • Splunk
      • Sumo Logic
    • Alert Integrations
      • Gem
    • Communicators
      • Slack Communicator
    • Data Source Integrations
      • AbuseIPDB
      • Active Directory (LDAP)
      • Archive Inspector
      • Blocklist.de
      • CAPA
      • Censys
      • Crowdstrike Falcon Intelligence
      • DNSResolver
      • File
      • GreyNoise
      • Hybrid Analysis
      • Host.io
      • IPInfo.io
      • IPQualityScore
      • MalwareBazaar
      • Nuclei
      • NVD
      • Okta
      • oletools
      • OpenSSL Sign Code
      • PDF Analysis
      • Perplexity AI
      • PhishTank
      • Shodan
      • TShark
      • QRadar
      • UnshortenMe
      • URLhaus
      • Urlscan.io
      • VirusTotal
      • Vision
      • WHOIS
      • YARAify
Powered by GitBook
On this page
  • Create an API Key
  • Enable Gem

Was this helpful?

  1. Dropzone Integrations
  2. Alert Integrations

Gem

PreviousAlert IntegrationsNextCommunicators

Last updated 4 months ago

Was this helpful?

Gem is a Alert Source integration. The Dropzone platform creates Investigations based on alerts from Alert Sources.

Gem is a SIEM focusing on Cloud Detection and Response (CDR).

Create an API Key

Dropzone requires a Gem Client ID and Client Secret.

To obtain these, follow the instructions available on Gem's documentation site for creating a Client ID and Client Secret.

Enable Gem

To enable the Alert Source integration, do the following:

  • Navigate to your Dropzone AI tenant home page e.g. https://mycompany.dropzone.ai

  • Click System > Integrations

  • Click "Available"

  • In the Search bar, search Gem, then click "Configure"

  • Input your Gem server domain (e.g. app.gem.security, eu-west-1.app.gem.security)

  • Input the Client ID and Client Secret you created in the Gem interface

  • Click "Comment Investigation Results to ticket" if you want Dropzone to push investigation results back to Gem

  • Click "Test & Save"

If you have any errors or questions, engage your Dropzone AI support representative.

Integrations Dropdown
Click Available
The Gem Alert Tile
The Gem Alert Source Configuration