Skip to main content

Cisco Secure Workload

Visualize Cisco Secure Workload user roles and scopes, and monitor changes through queries and alerts.

Installation

To use the Cisco Secure Workload integration, you need an API Key and API Secret with the specific capabilities the integration requires. The integration authenticates using HMAC-SHA256 request signing — every request is signed with the API Secret, so no write access is granted.

Prerequisites

  1. Log in to your Cisco Secure Workload dashboard.
  2. Click your account name in the upper right corner and choose API Keys.
  3. Click Create API Key and enter an optional description.
  4. Under Capabilities, select all three of the following:
    • user_role_scope_management — read users, roles, and application scopes
    • flow_inventory_query — query workload inventory, packages, and vulnerabilities
    • app_policy_management — read application workspaces and security policies
  5. Click Create. Copy the API Key and API Secret and store them securely — the secret is shown only once.
  6. Note the URL of your Cisco Secure Workload dashboard (for example, https://<tenant>.tetrationpreview.com).

See Cisco Secure Workload OpenAPIs for full details on API key capabilities and authentication.

Configuration in JupiterOne

Navigate to Integrations in JupiterOne, select Cisco Secure Workload, and click New Instance.

Creating an instance requires the following:

  • API Key — The API Key generated in Cisco Secure Workload.
  • API Secret — The API Secret generated alongside the API Key.
  • API URI — The base URL of your Cisco Secure Workload dashboard (for example, https://<tenant>.tetrationpreview.com).

Click Create to finish. The integration will begin running on the polling interval you selected, or you can trigger it manually at any time.

Next steps

Once configured, your Cisco Secure Workload data will populate in JupiterOne. See the Instance management guide to learn how to edit, disable, or re-run your integration instance.