Integrate CyberSecurity Asset Management (CSAM)
By integrating CSAM with AWS S3, you gain near real-time, up-to-date visibility into your asset landscape directly from the AWS S3 console. This data, when correlated with other sources in AWS S3, helps you maintain an accurate asset inventory, identify exposure, and support timely risk analysis and remediation workflows.
Prerequisites
The following are the prerequisites to integrate the Qualys CyberSecurity Asset Management application with AWS S3:
- You must have a storage account with the necessary permissions.
- The CIPS service must be enabled for your subscription. Qualys Support enables it for your account. Contact the Qualys Support team for the integration process.
- Qualys applications: You must have enabled CyberSecurity Asset Management (CSAM) and Cloud Agent (CA) for your subscription.
- Permissions: The API Access permission must be enabled for your account.
- Role: You must have the Manager or Unit Manager role.
- Platform version: You must be on Enterprise TruRisk Platform Version version QWEB-10.21.1.0 or later.
Onboarding APIs
The Qualys Support helps you integrate AWS S3 with the Qualys Could Platform.
If you do not have a CSAM product created for your subscription, you can start by calling the product APIs. If you already have a CSAM product running, you can start with CSAM Integration APIs below.
CSAM Product APIs
The following APIs are used for creating and managing the CSAM product:
|
API |
URL |
Operator |
Description |
|---|---|---|---|
|
/partner- integration/product |
POST |
Creates a new CSAM product. |
|
|
/partner- integration/product/CSAM |
GET |
Gets the details of the created CSAM product. |
|
|
/partner- integration/product/CSAM |
DELETE |
Delete the CSAM product. |
CSAM Integration APIs
The following APIs are used for integration the CSAM product with AWS S3:
| API | URL | Operator | Description |
|---|---|---|---|
| Create Integration | /partner-integration/product-id/integration | POST | Creates a new integration with AWS S3 |
| /partner-integration/product-id/integration | PUT | Update the integration with AWS S3 | |
| /partner-integration/product-id/integration | GET | Get details of the integration with AWS S3 | |
| /partner-integration/product-id/integration | PATCH | Validate the integration with AWS S3 | |
| /partner-integration/product-id/integration | DELETE | Delete the integration with AWS S3 |