Integrate CyberSecurity Asset Management (CSAM)

By integrating CSAM with AWS S3, you gain near real-time, up-to-date visibility into your asset landscape directly from the AWS S3 console. This data, when correlated with other sources in AWS S3, helps you maintain an accurate asset inventory, identify exposure, and support timely risk analysis and remediation workflows.

Prerequisites

The following are the prerequisites to integrate the Qualys CyberSecurity Asset Management application with AWS S3:

  • You must have a storage account with the necessary permissions. 
  • The CIPS service must be enabled for your subscription. Qualys Support enables it for your account. Contact the Qualys Support team for the integration process.
  • Qualys applications: You must have enabled CyberSecurity Asset Management (CSAM) and Cloud Agent (CA) for your subscription.
  • Permissions: The API Access permission must be enabled for your account.
  • Role: You must have the Manager or Unit Manager role.
  • Platform version: You must be on Enterprise TruRisk Platform Version version QWEB-10.21.1.0 or later.

Onboarding APIs

The Qualys Support helps you integrate AWS S3 with the Qualys Could Platform.

If you do not have a CSAM product created for your subscription, you can start by calling the product APIs. If you already have a CSAM product running, you can start with CSAM Integration APIs below.

CSAM Product APIs

The following APIs are used for creating and managing the CSAM product:

API

URL

Operator

Description

Create Product

/partner- integration/product

POST

Creates a new CSAM product.

Get Product

/partner- integration/product/CSAM

GET

Gets the details of the created CSAM product.

Delete Product

/partner- integration/product/CSAM

DELETE

Delete the CSAM product.

CSAM Integration APIs

The following APIs are used for integration the CSAM product with AWS S3:

API URL Operator Description
Create Integration /partner-integration/product-id/integration POST Creates a new integration with AWS S3

Update
Integration

/partner-integration/product-id/integration PUT Update the integration with AWS S3

Get 
Integration

/partner-integration/product-id/integration GET Get details of the integration with AWS S3

Validate
Integration

/partner-integration/product-id/integration PATCH Validate the integration with AWS S3

Delete
Integration

/partner-integration/product-id/integration DELETE Delete the integration with AWS S3