Cisco Secure Endpoint (formerly Advanced Malware Protection for Endpoints) API
The Secure Endpoint API allow users to expedite their investigations by identifying which endpoints have seen a file, create custom file lists, and move endpoints in and out of triage groups. Additionally, all events generated in an environment can be collected and archived allowing for extended historical data correlation.
What can you do with Secure Endpoint APIs?

Ingest Events
- Store events in 3rd party tools
- Archive extended event history
- Correlate against other logs

Search Environment
- Find where a file has been
- Determine if a file was executed
- Capture command line arguments

Basic Management
- Create Groups
- Move Computers
- Manage File Lists
Find sample code and scripts
Questions? We are here to help.
Bring your questions to the Secure Endpoint community! Engage, collaborate and share with your fellow experts in the developer forum.