diff --git a/blog-service/2024-11-08-apps.md b/blog-service/2024-11-08-apps.md
new file mode 100644
index 0000000000..1ee6f3f141
--- /dev/null
+++ b/blog-service/2024-11-08-apps.md
@@ -0,0 +1,16 @@
+---
+title: Kandji (Apps)
+image: https://help.sumologic.com/img/sumo-square.png
+keywords:
+ - kandji
+ - apps
+hide_table_of_contents: true
+---
+
+import useBaseUrl from '@docusaurus/useBaseUrl';
+
+
+
+We're excited to introduce the new Kandji app for Sumo Logic. This app leverages the Sumo Logic Cloud-to-Cloud Kandji source to collect threat events and device events, thereby maintaining a secure Apple device environment and strengthening organizational security posture.
+
+Explore our technical documentation [here](/docs/integrations/saas-cloud/kandji/) to learn how to set up and use the Kandji app for Sumo Logic.
diff --git a/cid-redirects.json b/cid-redirects.json
index e159b2a41b..a57ca8de04 100644
--- a/cid-redirects.json
+++ b/cid-redirects.json
@@ -1810,6 +1810,7 @@
"/cid/19600": "/docs/integrations/saas-cloud/citrix-cloud",
"/cid/60046": "/docs/integrations/saas-cloud/sentinelone",
"/cid/60048": "/docs/integrations/saas-cloud/knowbe4",
+ "/cid/60049": "/docs/integrations/saas-cloud/kandji",
"/cid/19601": "/docs/integrations/saas-cloud/docusign",
"/cid/2122": "/docs/integrations/saas-cloud/gmail-tracelogs",
"/cid/21202": "/docs/integrations/saas-cloud/airtable",
diff --git a/docs/integrations/product-list/product-list-a-l.md b/docs/integrations/product-list/product-list-a-l.md
index c67bb44262..554f2ee01d 100644
--- a/docs/integrations/product-list/product-list-a-l.md
+++ b/docs/integrations/product-list/product-list-a-l.md
@@ -314,7 +314,7 @@ For descriptions of the different types of integrations Sumo Logic offers, see [
| :-- | :-- | :-- |
|
| [Kafka](https://kafka.apache.org/) | Apps:
- [Kafka](/docs/integrations/containers-orchestration/kafka/)
- [Kafka - OpenTelemetry](/docs/integrations/containers-orchestration/opentelemetry/kafka-opentelemetry/) |
|
| [Kaltura](https://corp.kaltura.com/) | Cloud SIEM integration: [Kaltura](https://github.com/SumoLogic/cloud-siem-content-catalog/blob/master/vendors/c65f8f5f-ea11-4b41-858b-99731d306f81.md)
Collector: [Kaltura - Source](/docs/send-data/hosted-collectors/cloud-to-cloud-integration-framework/kaltura-source/) |
-|
| [Kandji](https://www.kandji.io/) | Collector: [Kandji - Source](/docs/send-data/hosted-collectors/cloud-to-cloud-integration-framework/kandji-source/)
Community app: [Kandji API Data Streamer](https://github.com/SumoLogic/sumologic-content/tree/master/Kandji) |
+|
| [Kandji](https://www.kandji.io/) | Apps: [Kandji](/docs/integrations/saas-cloud/kandji)
Collector: [Kandji Source](/docs/send-data/hosted-collectors/cloud-to-cloud-integration-framework/kandji-source/)
Community app: [Kandji API Data Streamer](https://github.com/SumoLogic/sumologic-content/tree/master/Kandji) |
|
| [Kaspersky](https://usa.kaspersky.com/) | Automation integrations:
- [Kaspersky CyberTrace](/docs/platform-services/automation-service/app-central/integrations/kaspersky-cybertrace/)
- [Kaspersky TIP](/docs/platform-services/automation-service/app-central/integrations/kaspersky-tip/)
Cloud SIEM integration: [KasperskyLab](https://github.com/SumoLogic/cloud-siem-content-catalog/blob/master/vendors/8011e6fe-1e65-4603-aa2e-15c9b33cb0fd.md) |
|
| [Keeper Security](https://www.keepersecurity.com/) | Partner integration: [Keeper Security](https://docs.keeper.io/en/v/enterprise-guide/event-reporting/sumo-logic) |
|
| [Kela](https://www.kelacyber.com/) | Automation integrations:
- [Kela Darkbeast](/docs/platform-services/automation-service/app-central/integrations/kela-darkbeast/)
- [Kela RaDark](/docs/platform-services/automation-service/app-central/integrations/kela-radark/) |
diff --git a/docs/integrations/saas-cloud/index.md b/docs/integrations/saas-cloud/index.md
index f7dd40ef6a..931f322bf1 100644
--- a/docs/integrations/saas-cloud/index.md
+++ b/docs/integrations/saas-cloud/index.md
@@ -147,6 +147,12 @@ Learn about the Sumo Logic apps for SaaS and Cloud applications.
Gain visibility into your Istio and control plane component performance.
+})
Identify security threats by analyzing threat events and device events.
+})
+
+The Sumo Logic app for Kandji provides comprehensive visibility into the security and management of Apple devices within an organization. This app enables security teams to monitor threats, detect vulnerabilities, and track device health in real time. By analyzing the threat counts, device enrollment trends, activity types, and geographic distribution, this app helps you to identify risks and respond to potential security incidents swiftly.
+
+The app also supports compliance tracking by providing insights into device configurations and status, allowing teams to ensure devices are secure and up-to-date. With its data-driven insights, the Sumo Logic App for Kandji is a powerful tool for maintaining a secure Apple device environment and strengthening organizational security posture.
+
+:::info
+This app includes [built-in monitors](#kandji-monitors). For details on creating custom monitors, refer to [Create monitors for Kandji app](#create-monitors-for-kandji-app).
+:::
+
+## Log types
+
+This app uses Sumo Logic’s Kandji Source to collect threat events and device events from the Kandji platform.
+
+## Sample log messages
+
+
+
+### Device Activities
+
+The **Kandji - Device Activities** dashboard provides security analysts insights into device actions and commands within their managed fleet. Key metrics include the count of newly enrolled devices, top command types executed, and device activities categorized by action type. This allows the analysts to monitor and verify the activity of the devices for essential configurations and commands.
+
+The dashboard also shows the top active devices by frequency of actions, offering a view into which devices have the highest interaction rates. A time-series panel for devices enrolled over time helps track enrollment trends, while the detailed *Recently Enrolled Devices* table offers an audit trail for each device, including enrollment timestamps and action types. This comprehensive view enables security teams to detect anomalies, troubleshoot issues, and ensure compliance across the fleet.
+
+### Devices Overview
+
+The **Kandji - Devices Overview** dashboard provides security analysts comprehensive snapshot of the managed device landscape. Below are some of the key metrics that are included in this dashboard:
+
+- **Total Devices**. Provides the count of all devices under management.
+- **Total Removed Devices**. Devices that have been deactivated or removed from the managed inventory.
+- **Total Missing Devices**. Devices that are currently unreachable or unresponsive.
+- **Devices with Not Installed Agent**. Indicates the devices where the Kandji agent is missing, highlighting potential gaps in security coverage.
+- **MDM Disabled Devices and Recovery Locked Disabled Devices**. Show the count of devices with disabled MDM or recovery lock, helping you to identify potential risks for device management and data security.
+- **Devices by Blueprints**. Displays the frequency of devices by assigned blueprint.
+- **Recently Checked-in Devices**. Provides a detailed log of recent device activity, including last check-in time, device platform, OS version, and blueprint assigned.
+
+Additionally, this dashboard also includes Device Distribution by Platform (for example, Mac, iPhone) and Device OS Versions, allowing analysts to quickly assess the mix of operating systems in use. Interactive visualizations, such as Geo-Location of Devices and Devices from Risky Geo-Locations, give a geographical perspective on the device fleet and help identify devices that are located in high-risk regions. This dashboard is a valuable tool for monitoring device status, ensuring compliance with security policies and quickly identifying potential risks across the device fleet.
+
+
+## Create monitors for Kandji app
+
+import CreateMonitors from '../../reuse/apps/create-monitors.md';
+
+