Push Security - Detections
Push Security - Detections
Cette page n'est pas encore disponible en français, sa traduction est en cours.
Si vous avez des questions ou des retours sur notre projet de traduction actuel,
n'hésitez pas à nous contacter.
Overview
Push Security is an identity security platform that focuses on securing workforce identities through browser-level monitoring. It uses a browser extension to provide real-time visibility into user activity, enabling the detection and response to threats such as phishing, session hijacking, and credential misuse.
Integrate Push Security with Datadog’s pre-built dashboard visualizations to gain insights into Events. With Datadog’s built-in log pipelines, you can parse and enrich these logs to facilitate easy search and detailed insights. Additionally, this integration includes ready-to-use Cloud SIEM detection rules for enhanced monitoring and security.
Setup
Configuration
Webhook Configuration
Configure the Datadog endpoint to forward Push Security events as logs to Datadog:
- Copy the generated URL inside the Configuration tab on the Datadog Push Security tile.
- Sign in to Push Security Portal.
- Go to Settings > Webhooks.
- Click + Webhook.
- In the URL field, enter the webhook URL generated in step 1.
- Under the Select Events section, make sure the following checkboxes are selected:
- Activity
- Audit
- Controls
- Detections
- Entities
- Click Generate Webhook.
Data Collected
Logs
The Push Security integration collects activity, audit, control, detection and entity events.
Metrics
The Push Security integration does not include any metrics.
Events
The Push Security integration does not include any events.
Support
For further assistance, contact Datadog support.