Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add workflows for BeyondTrust Privilege Management Cloud #192

Open
jamos-bt opened this issue Aug 2, 2023 · 0 comments
Open

Add workflows for BeyondTrust Privilege Management Cloud #192

jamos-bt opened this issue Aug 2, 2023 · 0 comments
Labels
workflow-submission Issue linked to a pull request for a workflow submission

Comments

@jamos-bt
Copy link

jamos-bt commented Aug 2, 2023

Consists of TWO workflows (not sure how that plays into the consistency thing since the other submissions seem to only have a single pair of workflow definition and parameters). Each workflow is capable of retrieving data for one of the two primary categories of events which occur in or flow through the PM Cloud product:

  • Activity Audits - These events occur within the PM Cloud web interface - examples include: policy changes, group changes, user management, etc.
  • Client Events - These events occur on the individual endpoints that are managed through PM Cloud and are related directly to the functioning of the Privilege Management client deployed on those endpoints - examples include; process blocked, process allowed, service started, etc.

We also have an extension package which includes DSM Event Mappings, Log Source Types, QID Records, and so on to support these workflows. The goal is to eventually publish that extension to the Security App Exchange.

@ChrisCollinsIBM ChrisCollinsIBM added the workflow-submission Issue linked to a pull request for a workflow submission label May 27, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
workflow-submission Issue linked to a pull request for a workflow submission
Projects
None yet
Development

No branches or pull requests

2 participants