<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Dynatrace Application Security Integrations in Automations</title>
    <link>https://community.dynatrace.com/t5/Automations/Dynatrace-Application-Security-Integrations/m-p/209088#M306</link>
    <description>&lt;P&gt;Dynatrace AppSec uses the OneAgent to scan potential vulnerable code and components, matching it against the Snyk database.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Security vulnerabilities are exportable via the API and can be pushed to every tool if you write a simple script and have API access there f.e.&lt;/P&gt;&lt;P&gt;From other tools you can use the dynatrace api to import metrics from there and create problems within Dynatrace. I can't answer the question if Dynatrace will support other tooling but I think this won't be something they'll work on probably.&lt;/P&gt;</description>
    <pubDate>Tue, 04 Apr 2023 19:25:09 GMT</pubDate>
    <dc:creator>michiel_otten</dc:creator>
    <dc:date>2023-04-04T19:25:09Z</dc:date>
    <item>
      <title>Dynatrace Application Security Integrations</title>
      <link>https://community.dynatrace.com/t5/Automations/Dynatrace-Application-Security-Integrations/m-p/209079#M305</link>
      <description>&lt;P&gt;With the introduction of Application security, I wanted to know if it is possible to have it integrated with other scanning tools that any client would have like Tenable or Nessus for example. if yes how is it done and if it is not possible at the moment is it something that is being developed?&lt;/P&gt;</description>
      <pubDate>Wed, 05 Apr 2023 07:11:44 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Automations/Dynatrace-Application-Security-Integrations/m-p/209079#M305</guid>
      <dc:creator>Ahmed_Khaled</dc:creator>
      <dc:date>2023-04-05T07:11:44Z</dc:date>
    </item>
    <item>
      <title>Re: Dynatrace Application Security Integrations</title>
      <link>https://community.dynatrace.com/t5/Automations/Dynatrace-Application-Security-Integrations/m-p/209088#M306</link>
      <description>&lt;P&gt;Dynatrace AppSec uses the OneAgent to scan potential vulnerable code and components, matching it against the Snyk database.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Security vulnerabilities are exportable via the API and can be pushed to every tool if you write a simple script and have API access there f.e.&lt;/P&gt;&lt;P&gt;From other tools you can use the dynatrace api to import metrics from there and create problems within Dynatrace. I can't answer the question if Dynatrace will support other tooling but I think this won't be something they'll work on probably.&lt;/P&gt;</description>
      <pubDate>Tue, 04 Apr 2023 19:25:09 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Automations/Dynatrace-Application-Security-Integrations/m-p/209088#M306</guid>
      <dc:creator>michiel_otten</dc:creator>
      <dc:date>2023-04-04T19:25:09Z</dc:date>
    </item>
    <item>
      <title>Re: Dynatrace Application Security Integrations</title>
      <link>https://community.dynatrace.com/t5/Automations/Dynatrace-Application-Security-Integrations/m-p/237427#M1476</link>
      <description>&lt;P&gt;Hi Michiel,&lt;/P&gt;&lt;P&gt;We have integrated AppSec notifications using webhook with Splunk SIEM. T&lt;SPAN&gt;he custom payload fields allows only certain fields&amp;nbsp;&lt;/SPAN&gt;but our customer is looking for more fields like&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;CVE (for known vulnerability) or Reference ID (for misconfigurations)&lt;/LI&gt;&lt;LI&gt;CVE Severity&lt;/LI&gt;&lt;LI&gt;CVE ID&lt;/LI&gt;&lt;LI&gt;Host Name&lt;/LI&gt;&lt;LI&gt;IP&lt;/LI&gt;&lt;LI&gt;Pod / Node&lt;/LI&gt;&lt;LI&gt;Container&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;any suggestion?&lt;/P&gt;</description>
      <pubDate>Mon, 19 Feb 2024 14:17:22 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Automations/Dynatrace-Application-Security-Integrations/m-p/237427#M1476</guid>
      <dc:creator>Esam_Eid</dc:creator>
      <dc:date>2024-02-19T14:17:22Z</dc:date>
    </item>
    <item>
      <title>Re: Dynatrace Application Security Integrations</title>
      <link>https://community.dynatrace.com/t5/Automations/Dynatrace-Application-Security-Integrations/m-p/239527#M1507</link>
      <description>&lt;P&gt;Hi there,&lt;BR /&gt;&lt;BR /&gt;The custom webhook will just do some notiication indeed. If you want to integrate further you could try using the API. F.e.:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://docs.dynatrace.com/docs/dynatrace-api/environment-api/application-security/vulnerabilities/get-vulnerabilities" target="_blank"&gt;Vulnerabilities API - GET vulnerabilities - Dynatrace Docs&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Using a workflow you can set up your own integration to SIEM where you finetune the notification.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2024 18:28:52 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Automations/Dynatrace-Application-Security-Integrations/m-p/239527#M1507</guid>
      <dc:creator>michiel_otten</dc:creator>
      <dc:date>2024-03-11T18:28:52Z</dc:date>
    </item>
  </channel>
</rss>

