- 28 Feb 2024
- 1 Minute to read
- Print
- PDF
Integrate PagerDuty with Prisma Cloud DSPM
- Updated on 28 Feb 2024
- 1 Minute to read
- Print
- PDF
Overview
Through its SaaS-based platform, PagerDuty empowers developers, DevOps, IT operations and business leaders to prevent and resolve business-impacting incidents. PagerDuty arms organizations with the insight to proactively manage events that may impact customers across their IT environment
Integrating PageDuty with Dig Security allows you to create PagerDuty tickets based on events received by Prisma Cloud DSPM. This enables you to seamlessly streamline remediation activity to the relevant stakeholders in the organization.
Prerequisite
To integrate PagerDuty with Prisma Cloud DSPM, ensure that you have a PagerDuty account with admin privileges.
Integration
Step 1: Create a New Service in PagerDuty and Get the Integration Key
- Log in to PagerDuty.
- In the Integrations menu, select API Access Keys.
Create a New API Key
The API key will be used as a client secret during the registration process.
- In the API Access Keys window, click + Create New API Key.
- In the Create API Key pop up, enter a meaningful description, and click Create Key.
- The New API Key pop-up displays the API key. Copy and save the API Key as it will not be shown again.
- After copying and saving the key, click Close.
Create a New Service
- In the Services menu, select Service Directory.
- In the Service Directory window, click + New Service.
- Complete the Create a Service Form.
- Enter a name, description, and click Next.
- Generate a new Escalation Policy or select an existing Escalation Policy.
- Choose the Alert Grouping options as required, and click Next.
- Choose the Events API V2 integration option.
- Enter a name, description, and click Next.
- Click Create Service. After creating a new service, you are redirected to its Integrations page.
- Copy and save the Integration Key. The Integration key will be required for configuring PagerDuty integration in Prisma Cloud DSPM.
Step 2: Complete the Integration in Prisma Cloud DSPMDig Security
- Sign in to your Prisma Cloud DSPM account.
- From the left menu, select Settings.
- Under Integrations, go to the Workflow area, select the PagerDuty option, and click Connect.
- In the PagerDuty window, enter the integration key and the API key, and click Create. This completes the integration.
Create a PagerDuty Ticket
- From the left menu, select Risks, and click the Findings tab.
- Click on a Finding.
- In the Options drop down, (available for any of the Findings details), click Create PagerDuty ticket.
- Edit the ticket as required, and click Create.
- The ticket can now be viewed in the Prisma Cloud DSPM Risk Findings tab.
- Click the link to go to the ticket in PagerDuty.