API & Integrations - Cisco XDR Integration - Mar 2026

Service Update

Availability March 11th, 2026
Product(s) Email Security - MX
Who's affected All Eamil Security - MX customers with the Human Risk Command Center (HRCC)

Overview

Mimecast is pleased to announce the Cisco XDR integration. Cisco XDR is a cloud-based extended detection and response platform that simplifies security operations by integrating and correlating data from multiple security sources to provide a unified view of threats. The integration allows Mimecast to pull malware events identified by Cisco XDR in customers' environments and modify each employee's malware score accordingly.

What's changing

  • Integration Availability: The Cisco XDR integration is now available in the Mimecast Integrations Hub.
  • Functionality: The integration periodically reads incident data from Cisco XDR via API. These events are forwarded to the Human Risk Platform, which associates each event with a user, and updates the malware behavior score for that user.
  • Experience: Historical events will not be pulled from Cisco XDR; only events from the point of integration onward. This simplifies Onboarding, and will not change historical attack factor scores.
  • Authentication: The integration requires two pieces of information: a Client ID and Client Password, generated in the Cisco XDR console, in order to authenticate with the API.

Recommended actions

Nothing needs to be done as a result of these changes.

See Also...

Was this article helpful?
0 out of 0 found this helpful

Comments

0 comments

Please sign in to leave a comment.