Creating and Integrating a Smart Connector into the Existing ArcSight Infrastructure

Hello,

I’m new to the ArcSight platform and I’m looking to integrate a third-party threat intelligence feed with ArcSight. The feed data will be provided through an API, and I want to ingest this data into ArcSight for threat analysis.

ArcSight already offers various smart connectors (like syslog) for ingesting data. I would like to create a smart connector for this third-party threat intelligence source and integrate it into ArcSight’s existing smart connector infrastructure.

Could anyone guide me on the procedure or best practices for creating and integrating a smart connector for a third-party threat intelligence feed?

Thank you!