Myrmex connects on demand and reads (and acts) in real time — nothing from Vision One is stored on the Myrmex side.
What Myrmex Can Do
Detections and alerts
Read Workbench alerts and detections live and triage them in Alerts.
Endpoint context
Read agent and account context to enrich investigations.
Investigate with AI
Let Hydra query Vision One and summarize what’s happening.
Guided response
Propose response actions, always with your approval.
Before You Start
- A Vision One account with a role that can create API keys (privileged or administrator access).
- Your Vision One region — each region has its own API host.
- A Collector that can reach the Vision One API over outbound HTTPS.
Step 1 — Create the Credential in Trend Micro Vision One
1
Open API Keys
In the Vision One console, go to Administration → API Keys.
2
Add an API key
Click Add API Key. Name it, choose a role that grants the access Myrmex needs (a SIEM or read role is enough to read detections), set an expiration, and set the status to Enabled.
3
Copy the key
Click Add and copy the generated token — you’ll paste it into Myrmex.