-
Couldn't load subscription status.
- Fork 505
Closed
1 / 11 of 1 issue completedClosed
1 / 11 of 1 issue completed
Copy link
Labels
Integration:rapid7_insightvmRapid7 InsightVMRapid7 InsightVMTeam:Security-Service IntegrationsSecurity Service Integrations team [elastic/security-service-integrations]Security Service Integrations team [elastic/security-service-integrations]Team:Sit-CrestCrest developers on the Security Integrations team [elastic/sit-crest-contractors]Crest developers on the Security Integrations team [elastic/sit-crest-contractors]enhancementNew feature or requestNew feature or request
Description
As part of effort to leverage Cloud Detection and Response (CDR) workflows such as Elastic CSPM and CNVM for 3rd party integrations, the vulnerabilities data from Rapid7 InsightVM needs to be enriched just like previous enhancements for Wiz, AWS Security Hub, and Qualys VMDR.
For this work, the rapid7_insightvm.vulnerability data stream which ingests exported vulnerabilities of assets must be enriched to support Elastic CNVM workflow.
Tasks:
- Get access to Rapid7 instance.
- Received API Token.
- Setup Rapid7 data ingestion.
- Setup done using API Token.
- Analyse mappings for Rapid7 and get necessary clarifications.
- Rapid7 Insight VM: Implement mappings for Cloud Security Workflows #13775
- Rapid7 InsightVM: Implement transform for Cloud Security Workflows #13776
Sub-issues
Metadata
Metadata
Assignees
Labels
Integration:rapid7_insightvmRapid7 InsightVMRapid7 InsightVMTeam:Security-Service IntegrationsSecurity Service Integrations team [elastic/security-service-integrations]Security Service Integrations team [elastic/security-service-integrations]Team:Sit-CrestCrest developers on the Security Integrations team [elastic/sit-crest-contractors]Crest developers on the Security Integrations team [elastic/sit-crest-contractors]enhancementNew feature or requestNew feature or request