Skip to main content

SecurityScorecard

Download With Dependencies

Provides security scorecards and alerts for domains.

The SecurityScorecard Ratings Content Pack is an integrated offering that provides an alerting system triggered by configurable conditions such as changes in organization grades and vulnerabilities found.

This Content Pack enables security teams to create an alert in SecurityScorecard with particular conditions, which allows them to delete, update and interact with the alerts. A Cortex XSOAR Incident is created when an alert is triggered in SecurityScorecard. Alerts can be retrieved for factor grade drops, overall score drops, new vulnerabilities found, new issues, and CVEs detected.

What does this pack do?

  • Manage (create, delete, list) score or threshold-based alerts.

  • Fetches SecurityScorecard alerts into Cortex XSOAR Incidents.

  • Retrieves current and historical security scores for organization with the ability to choose specific risk factors such as:

    • Cloud Security: Measures security of your cloud infrastructure.
    • Internal Security: Measures security of your internal networks.
    • Network Security: Detecting insecure network settings.
    • DNS Health: Detecting DNS insecure configurations and vulnerabilities.
    • Patching Cadence: Out of date company assets which may contain vulnerabilities or risks.
    • Endpoint Security: Detecting unprotected endpoints or entry points of user tools, such as desktops, laptops, mobile devices, and virtual desktops.
    • IP Reputation: Detecting suspicious activity, such as malware or spam, within your company network.
    • Application Security: Detecting common website application vulnerabilities.
    • Cubit Score: Proprietary algorithms checking for implementation of common security best practices.
    • Hacker Chatter: Monitoring hacker sites for chatter about your company.
    • Information Leak: Potentially confidential company information which may have been inadvertently leaked.
    • Social Engineering: Measuring company awareness to a social engineering or phishing attack.
  • List portfolios and companies included within those portfolios.

  • List companies' 3rd-party services.

The pack includes customized:

  • Integration
  • Incident Fields
  • Incident Type
  • Mapper
  • Layout

Pack Contributors:


  • Mariano Mendez

Contributions are welcome and appreciated. For more info, visit our Contribution Guide.

The SecurityScorecard Ratings Content Pack is an integrated offering that provides an alerting system triggered by configurable conditions such as changes in organization grades and vulnerabilities found.

This Content Pack enables security teams to create an alert in SecurityScorecard with particular conditions, which allows them to delete, update and interact with the alerts. A Cortex XSIAM Incident is created when an alert is triggered in SecurityScorecard. Alerts can be retrieved for factor grade drops, overall score drops, new vulnerabilities found, new issues, and CVEs detected.

What does this pack do?

  • Manage (create, delete, list) score or threshold-based alerts.

  • Fetches SecurityScorecard alerts into Cortex XSIAM Incidents.

  • Retrieves current and historical security scores for organization with the ability to choose specific risk factors such as:

    • Cloud Security: Measures security of your cloud infrastructure.
    • Internal Security: Measures security of your internal networks.
    • Network Security: Detecting insecure network settings.
    • DNS Health: Detecting DNS insecure configurations and vulnerabilities.
    • Patching Cadence: Out of date company assets which may contain vulnerabilities or risks.
    • Endpoint Security: Detecting unprotected endpoints or entry points of user tools, such as desktops, laptops, mobile devices, and virtual desktops.
    • IP Reputation: Detecting suspicious activity, such as malware or spam, within your company network.
    • Application Security: Detecting common website application vulnerabilities.
    • Cubit Score: Proprietary algorithms checking for implementation of common security best practices.
    • Hacker Chatter: Monitoring hacker sites for chatter about your company.
    • Information Leak: Potentially confidential company information which may have been inadvertently leaked.
    • Social Engineering: Measuring company awareness to a social engineering or phishing attack.
  • List portfolios and companies included within those portfolios.

  • List companies' 3rd-party services.

The pack includes customized:

  • Integration
  • Incident Fields
  • Incident Type
  • Mapper
  • Layout

Pack Contributors:


  • Mariano Mendez

Contributions are welcome and appreciated. For more info, visit our Contribution Guide.

PUBLISHER

PLATFORMS

Cortex XSOARCortex XSIAM

INFO

CertificationRead more
Supported ByPartner
CreatedNovember 2, 2021
Last ReleaseNovember 26, 2024
WORKS WITH THE FOLLOWING INTEGRATIONS:

DISCLAIMER
Content packs are licensed by the Publisher identified above and subject to the Publisher’s own licensing terms. Palo Alto Networks is not liable for and does not warrant or support any content pack produced by a third-party Publisher, whether or not such packs are designated as “Palo Alto Networks-certified” or otherwise. For more information, see the Marketplace documentation.