Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Automate Okta and Office 365 user provisioning with approval in Tines Stories

Automate user account provisioning for Okta and Office 365, with a built-in approval step. In this five-minute flow, you'll see how Tines handles the full lifecycle of a new user access request: from a self-service form submission, through a Slack-based approval, all the way to account creation in Okta or Microsoft Entra ID (Office 365). No more manual back-and-forth between IT, system owners, and new starters.

Building AI agents in Tines Stories: tips and tricks for advanced builders

This is the second in a two-part series on AI agents in Tines Stories. Part one covers the foundations: when to use agents, how to configure them, how to write prompts that work, and how to build securely. This post goes deeper on the patterns that separate robust, well-built agents from just good enough ones.

Building AI agents in Tines Stories: tips and tricks for getting started

AI agents are powerful, but they're not magic. Left unconstrained, they'll burn through credits, hallucinate confidently, and make decisions you can't explain to your team. The fix isn't a smarter model, it's a smarter workflow. This guide focuses on the foundations of building an agent: when to use agents, how to configure them, how to write prompts that work, and how to build securely from day one.

The $50K per hour network downtime dilemma

Networking and network security stakes are high. Like really high. Infrastructure downtime costs teams at minimum $50,000 per hour, according to Business Wire. So what’s standing in the way of a faster, more coordinated response? Join Netskope and Tines for a live conversation on how you can move from reactive networking and network security operations to proactive response. Learn how to bridge the gap between detection and resolution across modern hybrid environments, improving reliability, accelerating response times, and reducing the manual work that slows teams down.

Detect insider threats using Tines audit logs and AI

Automatically detect suspicious story deletions and insider threats in Tines before they become a bigger problem. This five-minute flow monitors your Tines audit logs on a schedule, checks for both soft and hard story deletions, and flags unusual user behaviour. When something looks off, an LLM summarizes the user's recent activity and a Case is automatically created for your team to investigate.

150 hours saved in one month: Inside Jamf's IT Ops automation strategy

What would your IT team do with 150 extra hours in just one month? That’s exactly what Jamf achieved - the equivalent of nearly one additional full-time employee - while dramatically accelerating workflow delivery and reducing manual operational overhead. In this session, hear directly from the Jamf team on how they replaced manual, ticket-based IT work with intelligent workflows - from responsive phishing reporting and employee alert notifications to on-demand FileVault key recovery.

Enrich CrowdStrike detections with VirusTotal and send to TheHive

Automatically enrich CrowdStrike endpoint detections with VirusTotal and create fully enriched alerts in TheHive. When a new endpoint detection fires in CrowdStrike, this Tines story instantly creates a structured alert in TheHive and kicks off three parallel enrichment paths; checking every IP, file hash, and URL against VirusTotal. By the time your analyst opens the alert, the context is already there.

AI-generated code is running wild inside the enterprise. Now what?

Restrict access to AI tools and you curb innovation. Open it up and security risks multiply. And then there's a third problem: approved tools behaving in unapproved ways. Security and IT leaders are navigating a new and fast-moving problem - employees using AI to build workflows, automations, and agents faster than anyone can track or govern. The question isn't whether it's happening. It's what to do about it.

Monitor Netskope ADEM scores and remediate with an AI chatbot

Automatically detect when user connectivity degrades in Netskope ADEM and respond instantly with an AI-powered Slack chatbot. In this five-minute flow, we walk through how to monitor Netskope ADEM experience scores for key users and trigger proactive outreach via Slack when performance drops. You'll see how Tines pulls scores on a schedule, creates a case when a threshold is breached, uses an LLM to craft a personalised Slack message, and deploys a Virtual Assistant to help the user troubleshoot in real time.