To find out if this integration is available in your organization, see your Datadog Integrations page or ask your organization administrator.
To initiate an exception request to enable this integration for your organization, email support@ddog-gov.com.
Proofpoint TAP Clicks Insights
Proofpoint TAP Messages Insights
Overview
Proofpoint TAP (Targeted Attack Protection) is a cybersecurity solution designed to detect, mitigate, and block advanced threats that target people through email. It uses a next-generation email security platform to provide visibility into all email communications.
This integration ingests the following logs:
- Click Events: These logs provide information about user interactions with links in emails, including whether clicks were permitted or blocked, along with associated threat identification.
- Message Events: These logs provide information about email messages analyzed by Proofpoint TAP, including detection outcomes, delivery status (such as delivered or blocked), and threat identification.
This integration gathers and forwards above mentioned events to Datadog for seamless analysis. Datadog uses its built-in log pipelines to parse and enrich these logs, facilitating easy search and detailed insights. With preconfigured dashboards, the integration offers clear visibility into activities within the Proofpoint TAP platform. Additionally, it includes ready-to-use Cloud SIEM detection rules for enhanced monitoring and security.
Setup
Generate Service Credentials in Proofpoint TAP
- Login to the Proofpoint TAP dashboard.
- Navigate to Settings > Connected Applications.
- Click Create New Credential.
- Name the new credential set and click Generate.
- Copy the Service Principal and Secret.
Connect your Proofpoint TAP Account to Datadog
- Add your Service Principal and Secret.
| Parameters | Description |
|---|
| Service Principal | The Service Principal of your Proofpoint TAP account. |
| Secret | The Secret of your Proofpoint TAP account. |
| Get Click Blocked Events | Control the collection of Click Blocked Events from Proofpoint TAP. Enabled by default. |
| Get Click Permitted Events | Control the collection of Click Permitted Events from Proofpoint TAP. Enabled by default. |
| Get Message Blocked Events | Control the collection of Message Blocked Events from Proofpoint TAP. Enabled by default. |
| Get Message Delivered Events | Control the collection of Message Delivered Events from Proofpoint TAP. Enabled by default. |
- Click the Save button to save your settings.
Data Collected
Logs
The Proofpoint TAP integration collects and forwards click and message events to Datadog.
Metrics
The Proofpoint TAP integration does not include any metrics.
Events
The Proofpoint TAP integration does not include any events.
Support
For any further assistance, contact Datadog support.