Dragos Platform
Connect Dragos Platform to Radiant Security to forward OT and ICS security alerts for AI triage.
Last updated
Was this helpful?
Connect Dragos Platform to Radiant Security to forward OT and ICS security alerts for AI triage.
Dragos Platform is an operational technology (OT) security platform that monitors industrial control system (ICS) environments for threats, vulnerabilities, and operational risk. Connecting Dragos Platform forwards OT and ICS security alerts to Radiant Security via the Dragos REST API. Radiant uses these alerts to apply AI triage to industrial threats, giving analysts a unified view across OT and IT environments.
Radiant Security pulls alerts from Dragos Platform over the public internet. Allowlist the following Radiant Security egress IPs on your Dragos Platform endpoint or any upstream firewall:
100.21.80.201
52.11.97.167
35.164.70.154
Sign in to the Dragos Platform console.
Navigate to Admin > Users.
Under API Keys, click Add new API key.
Enter a name for the key (e.g., RadiantSecurityDataConnector).
Click Generate Key.
Copy the ID and Secret values. You will enter these as Key ID and Key Secret in Radiant Security in the next section.
Click OK.
The Secret value is shown only once and cannot be retrieved later. Store it securely before closing the dialog.
Sign in to Radiant Security.
From the navigation menu, select Settings > Data Connectors, then click + Add Connector.
Search for and select Dragos Platform, then click Data Feeds.
Under Select your data feeds, select Dragos Platform, then click Credentials.
Under Credential Name, enter a descriptive name (e.g., Dragos - API).
In the Base URL field, enter the URL you use to access the Dragos Platform console (e.g., https://companyName.platform.dragos.cloud).
In the Key ID field, paste the ID you copied from Dragos Platform.
In the Key Secret field, paste the Secret you copied from Dragos Platform.
Click Add Connector.
Click Done to save your changes.
After Dragos Platform begins forwarding, confirm alerts are reaching Radiant.
In Radiant, navigate to Log Management.
Filter by rs_connectorType:"dragos_platform".
Confirm recent alerts appear.
Allow several minutes for alerts to be parsed, indexed, and available for search.
Last updated
Was this helpful?
Was this helpful?