For AI agents: A markdown version of this page is available at https://docs.datadoghq.com/integrations/push-security.md. A documentation index is available at /llms.txt.

Push Security

Integration version1.0.0

To find out if this integration is available in your organization, see your Datadog Integrations page or ask your organization administrator.

To initiate an exception request to enable this integration for your organization, email support@ddog-gov.com.

Overview

Push Security is an identity security platform that focuses on securing workforce identities through browser-level monitoring. It uses a browser extension to provide real-time visibility into user activity, enabling the detection and response to threats such as phishing, session hijacking, and credential misuse.

Integrate Push Security with Datadog’s pre-built dashboard visualizations to gain insights into Events. With Datadog’s built-in log pipelines, you can parse and enrich these logs to facilitate easy search and detailed insights. Additionally, this integration includes ready-to-use Cloud SIEM detection rules for enhanced monitoring and security.

Setup

Webhook Configuration

Configure the Datadog endpoint to forward Push Security events as logs to Datadog:

  1. Copy the generated webhook URL from the Configure tab on the Push Security integration tile.
  2. Sign in to Push Security Portal.
  3. Go to Settings > Webhooks.
  4. Click + Webhook.
  5. In the URL field, enter the webhook URL generated in step 1.
  6. Under the Select Events section, make sure the following checkboxes are selected:
    • Activity
    • Audit
    • Controls
    • Detections
    • Entities
  7. Click Generate Webhook.

Data Collected

Logs

The Push Security integration collects activity, audit, control, detection and entity events.

Metrics

The Push Security integration does not include any metrics.

Events

The Push Security integration does not include any events.

Support

For further assistance, contact Datadog support.