-
Notifications
You must be signed in to change notification settings - Fork 562
Agentless Security Integrations Release - Phase II #14186
Copy link
Copy link
Open
Enhancement
18 / 2418 of 24 issues completed
Copy link
Labels
9.2 candidateEpicIntegration:1password1Password (Partner supported)1Password (Partner supported)Integration:abnormal_securityAbnormal AIAbnormal AIIntegration:auth0Auth0Auth0Integration:awsAWSAWSIntegration:carbon_black_cloudVMware Carbon Black CloudVMware Carbon Black CloudIntegration:checkpoint_emailCheck Point Harmony Email & CollaborationCheck Point Harmony Email & CollaborationIntegration:checkpoint_harmony_endpointCheck Point Harmony EndpointCheck Point Harmony EndpointIntegration:cisco_duoCisco DuoCisco DuoIntegration:cloudflareCloudflare (Community supported)Cloudflare (Community supported)Integration:digital_guardianDigital GuardianDigital GuardianIntegration:githubGitHubGitHubIntegration:imperva_cloud_wafImperva Cloud WAFImperva Cloud WAFIntegration:mimecastMimecast (Partner supported)Mimecast (Partner supported)Integration:ping_onePingOnePingOneIntegration:proofpoint_tapProofpoint TAPProofpoint TAPIntegration:slackSlack Logs (Community supported)Slack Logs (Community supported)Integration:snykSnykSnykIntegration:tenable_scTenable Security CenterTenable Security CenterIntegration:ti_anomaliAnomali ThreatStreamAnomali ThreatStreamIntegration:ti_crowdstrikeCrowdStrike Falcon IntelligenceCrowdStrike Falcon IntelligenceIntegration:ti_rapid7_threat_commandRapid7 Threat Command (Partner supported)Rapid7 Threat Command (Partner supported)Integration:ti_recordedfutureRecorded FutureRecorded FutureIntegration:trend_micro_vision_oneTrendAI Vision OneTrendAI Vision OneNew IntegrationIssue or pull request for creating a new integration package.Issue or pull request for creating a new integration package.Team:SDE-CrestCrest developers on the Security Integrations team [elastic/sit-crest-contractors]Crest developers on the Security Integrations team [elastic/sit-crest-contractors]Team:Security-Service IntegrationsSecurity Service Integrations team [elastic/security-service-integrations]Security Service Integrations team [elastic/security-service-integrations]enhancementNew feature or requestNew feature or request
Metadata
Metadata
Assignees
Labels
9.2 candidateEpicIntegration:1password1Password (Partner supported)1Password (Partner supported)Integration:abnormal_securityAbnormal AIAbnormal AIIntegration:auth0Auth0Auth0Integration:awsAWSAWSIntegration:carbon_black_cloudVMware Carbon Black CloudVMware Carbon Black CloudIntegration:checkpoint_emailCheck Point Harmony Email & CollaborationCheck Point Harmony Email & CollaborationIntegration:checkpoint_harmony_endpointCheck Point Harmony EndpointCheck Point Harmony EndpointIntegration:cisco_duoCisco DuoCisco DuoIntegration:cloudflareCloudflare (Community supported)Cloudflare (Community supported)Integration:digital_guardianDigital GuardianDigital GuardianIntegration:githubGitHubGitHubIntegration:imperva_cloud_wafImperva Cloud WAFImperva Cloud WAFIntegration:mimecastMimecast (Partner supported)Mimecast (Partner supported)Integration:ping_onePingOnePingOneIntegration:proofpoint_tapProofpoint TAPProofpoint TAPIntegration:slackSlack Logs (Community supported)Slack Logs (Community supported)Integration:snykSnykSnykIntegration:tenable_scTenable Security CenterTenable Security CenterIntegration:ti_anomaliAnomali ThreatStreamAnomali ThreatStreamIntegration:ti_crowdstrikeCrowdStrike Falcon IntelligenceCrowdStrike Falcon IntelligenceIntegration:ti_rapid7_threat_commandRapid7 Threat Command (Partner supported)Rapid7 Threat Command (Partner supported)Integration:ti_recordedfutureRecorded FutureRecorded FutureIntegration:trend_micro_vision_oneTrendAI Vision OneTrendAI Vision OneNew IntegrationIssue or pull request for creating a new integration package.Issue or pull request for creating a new integration package.Team:SDE-CrestCrest developers on the Security Integrations team [elastic/sit-crest-contractors]Crest developers on the Security Integrations team [elastic/sit-crest-contractors]Team:Security-Service IntegrationsSecurity Service Integrations team [elastic/security-service-integrations]Security Service Integrations team [elastic/security-service-integrations]enhancementNew feature or requestNew feature or request
Type
Fields
Give feedbackNo fields configured for Enhancement.
Description
Building on the completion of Phase I (#11810), this Epic describes enabling agentless deployment for the next wave of security integrations. Phase I delivered 15+ integrations including Office 365, Okta, AWS Security Hub and others.
Phase II expands agentless support to additional high-priority security integrations based on customer demand/usage.
Security integrations targeted for Phase II release:
edit: Table statuses updated 2026-02-19
Requirements
Following the established Phase I pattern, for each integration see the Onboarding Integration Guide.
1. Technical implementation
Example reference: #13367
2. Performance documentation
Example documentation format: "Crowdstrike Falcon Intelligence: 200ms avg API response, 5,000 events/min, 0.1% error rate, 512MB RAM/0.5CPU, 1000 API calls/hour limit"
Dependencies
References