Cisco Umbrella Investigate API - 1 Year Subscription License
Cisco Umbrella Investigate API is designed for security analysts, incident responders, and threat intelligence teams who need rapid access to Cisco's comprehensive threat intelligence database. This subscription license empowers a single user to enrich security data across SIEM platforms, threat intelligence systems, and incident response workflows throughout a full year. Quickly surface high-impact security incidents with contextual intelligence about domains, IPs, autonomous system numbers (ASNs), and file hashes—enabling faster threat detection and more informed security decisions.
Key Features
- Access to Cisco threat intelligence for domains, IPs, ASNs, and file hashes
- Investigate API integration with SIEM and threat intelligence platforms
- Investigate Console for direct threat data queries and analysis
- Data enrichment capabilities for incident response workflows
- Single-user license with 1-year subscription validity
- Real-time threat context to accelerate incident investigation
- Support for security analyst and incident responder teams
Technical Specifications
| Specification |
Details |
| Manufacturer |
Cisco Systems |
| Product Name |
Umbrella Investigate API - Subscription License |
| Part Number |
E2SC-UMBINV-1Y-INT |
| License Type |
Subscription |
| User Count |
1 User |
| Subscription Duration |
1 Year |
| Threat Intelligence Data |
Domains, IPs, ASNs, File Hashes |
| Access Method |
Investigate API and Investigate Console |
Frequently Asked Questions
What is Cisco Umbrella Investigate API used for?
Cisco Umbrella Investigate API provides threat intelligence enrichment for security operations. It enables SIEM platforms, threat intelligence systems, and incident response workflows to access Cisco's threat data about domains, IPs, ASNs, and file hashes, helping security teams quickly identify and respond to threats.
How does Umbrella Investigate API integrate with SIEM?
The Investigate API connects directly to your SIEM platform, allowing automated threat data enrichment. Security analysts can query threat intelligence for domains and IPs in real-time, adding critical context to security alerts and accelerating incident investigation processes.
Can multiple users access this subscription license?
This subscription license is for a single user. If your organization requires multiple users to access Cisco Umbrella Investigate API, additional licenses will need to be purchased separately.
What threat intelligence data does Umbrella Investigate provide?
Umbrella Investigate delivers comprehensive threat intelligence including domain reputation, IP address analysis, autonomous system number (ASN) data, and file hash information—enabling security teams to make informed decisions during threat investigations.