> For the complete documentation index, see [llms.txt](https://docs.dropzone.ai/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.dropzone.ai/integrations/alert/gem.md).

# Gem

{% hint style="info" %}
Gem is a Alert Source integration. The Dropzone platform creates Investigations based on alerts from Alert Sources.
{% endhint %}

Gem is a SIEM focusing on Cloud Detection and Response (CDR).

## Create an API Key

Dropzone requires a Gem Client ID and Client Secret.

To obtain these, follow the instructions available on Gem's [documentation site](https://docs.wiz.io/) for creating a Client ID and Client Secret.

## Enable Gem

To enable the Alert Source integration, do the following:

* Navigate to your Dropzone AI tenant home page e.g. https\://*mycompany*.dropzone.app
* In the bottom left hand corner, click Settings > Integrations

<figure><img src="/files/zN02u3HObDaemUY8E1kD" alt=""><figcaption><p>Integrations Dropdown</p></figcaption></figure>

* Click "Available"

<figure><img src="/files/brI7n2Ux40Tk0jTwBCVh" alt=""><figcaption><p>Click Available</p></figcaption></figure>

* In the Search bar, search Gem, then click "Configure"

<figure><img src="/files/SS41kGQdUh3P8X9YksTP" alt=""><figcaption><p>The Gem Alert Tile</p></figcaption></figure>

* Input your Gem server domain (e.g. *app.gem.security*, *eu-west-1.app.gem.security*)
* Input the Client ID and Client Secret you created earlier

<figure><img src="/files/DfBc4DU2t3eAaYEfSaMf" alt=""><figcaption><p>The Gem Alert Source Configuration (pt 1)</p></figcaption></figure>

* Input your desired poll interval and lookback
* Click "Comment Investigation Results to ticket" if you want Dropzone to push investigation results back to Gem

<figure><img src="/files/UURVbctaixyQ7WLAYn13" alt=""><figcaption><p>The Gem Alert Source Configuration (pt 2)</p></figcaption></figure>

* If you wish to further filter alerts using the Python [CEL](https://python-common-expression-language.readthedocs.io/en/stable/tutorials/cel-language-basics/) package, check the box labeled "Use advanced filtering"
* Input your CEL expression, then select whether to include or exclude alerts matching that filter. Add each filter individually using the "Add Item" button
* Contact your Dropzone AI support representative for more information about this feature

<figure><img src="/files/infLIQONnAkvK8XGXOi4" alt=""><figcaption><p>The Gem Alert Source Configuration (pt 3)</p></figcaption></figure>

* Click "Test & Save"

If you have any errors or questions, engage your Dropzone AI support representative.
