Uptycs mitigates risk by prioritizing your responses to threats, vulnerabilities, misconfigurations, sensitive data exposure, and compliance requirements across your modern attack surface, making this information accessible through a single user interface and data model. This includes the capability to correlate threat activity as it traverses on-premises and cloud boundaries, providing a more comprehensive enterprise-wide security posture.
Looking for acronym coverage? We've got you covered with CNAPP, CWPP, CSPM, KSPM, CIEM, CDR, and XDR. Start with your Detection Cloud, utilize Google-like search, and the attack surface coverage you need today.
For more information, see the Uptycs website.
The Uptycs integration enables you to ingest your Uptycs alerts and detections into Datadog events.
Each alert contains the following main components:
- Title
- Description
- Id: Uptycs alert ID.
- Uptycs alert code.
- Alert severity.
- Alert key and value.
- Asset details: Asset ID and host name.
- Uptycs URL to navigate to the Uptycs platform.
Each detection contains the following main components:
- Title or Name
- Id: Uptycs detection ID.
- Score: Uptycs calculated score.
- Alerts: List of Alerts associated with the detection.
- Events: List of Events associated with the detection.
- Attack Matrix: Techniques associated with the alerts and events.
- Asset details: Asset ID and host name.
- Uptycs URL to navigate to the Uptycs platform.
To set up this integration, you must have an Uptycs account. If you are not an Uptycs customer, contact us for an Uptycs account. You'll also need Datadog API keys.
- Create a Datadog API key.
- Create a Datadog Integration Destination on the Uptycs platform using your Datadog API key:
- Once the destination is set up, create a forwarding rule for it.
- The created destination can be used for alert forwarding.
- Once Uptycs generates an alert or detection, it will be delivered as a Datadog Event.
Need help? Contact Support.