elastic / elastic/integrations

[New Integration] Qualys CSPM

Open
#14,492 4 comments 0 reactions 0 assignees View on GitHub
New Integration
Dominant language
Handlebars
Stars
333
Forks
647
Avg merge
3d 4h
Merged PRs (30d)
209

Description

# Description
Qualys Cloud Security Posture Management (CSPM) helps organizations secure their cloud environments. It works by:

- Discovering and inventorying all your cloud assets across various platforms.
- Continuously detecting misconfigurations that create vulnerabilities and offering ways to fix them.
- Ensuring compliance with regulatory standards through built-in policies and reporting.
- Prioritizing risks and visualizing potential attack paths to focus on the most critical issues.
- Integrating with development workflows ("shifting left") to catch security issues in code before deployment.
- Operating agentlessly, making it easy to deploy and manage.

Essentially, Qualys CSPM provides a unified view and continuous protection against misconfiguration risks and compliance gaps across your multi-cloud infrastructure.

# Requirements
Develop a new integration against the Qualys CSPM solution using the preferred API endpoint documented by Qualys
Actions:
- @mitchell-rutigliano Will give both @qcorporation and @yahyaghani access to the Qualys CSPM (TotalCloud) infrastructure
- The assignee will focus on getting setup with building the integration
- The integration will not only ingest Policy Violations but also Policy Information as context
- The integration will NOT implement Asset fetching until @mitchell-rutigliano can assess if Global AssetView is a better way to gain visibility

Notes:
- @clement-fouque will create requirements for dashboards to view CSPM within Elastic/Kibana

# Dashboard Ideas
TBD

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.