Integration – via XML API

WhiteHat’s highly accurate vulnerability information combined with an open API makes WhiteHat Sentinel the only website risk management solution to provide reliable and precise website vulnerability data that can be shared and practically employed within an organization. WhiteHat Sentinel’s new integration capabilities deliver crystal clear visibility to different business stakeholders, including risk management and compliance, product management and software development teams. Organizations have greater insight into their risk posture and can take corrective action, while communicating that action across the different security tools in their infrastructure.

 

WhiteHat Sentinel integrates with industry leading bug tracking, security information and event management (SIEM) and Web application firewall (WAF) products, allowing website security data to be shared across departments. For the first time, website security can be integrated into an organization’s operations, delivering new levels of visibility throughout that organization and greater levels of control to security professionals.

WhiteHat offers a RESTful (Representational State Transfer) XML API. The API currently supports vulnerability data, website configurations, and policy information. The WhiteHat open API can be accessed with either a specially generated API Key, or an authenticated session ID token.

The following companies have successfully integrated with WhiteHat Sentinel via its open XML API:

  • Snort® IPS developed by Sourcefire – create ultra-targeted Snort rules,expanding the capability of an IPS to reliably detect application layer attacks
  • Archer Technologies – to manage enterprise risk by proactively identifying, tracking and managing the remediation of critical vulnerabilities in websites.

  • Jira bugtracking system – to give developers easy access to the information necessary to fix problems in custom website code.

  • Breach Security’s ModSecurity, F5 Networks ASM and Imperva SecureSphere Web Application Firewalls (WAFs) to enable real-time mitigation of website attacks.

WhiteHat Sentinel users can easily build their own integrations to streamline their internal risk management processes and direct WhiteHat’s succinct, actionable data to the correct resources.

 

“The ability to leverage software vulnerability information from WhiteHat Sentinel integrated with Archer, enables DTCC to recognize the economic benefit of the completion of remediation tasks with assigned accountability. WhiteHat Sentinel provides excellent software vulnerability information by levels of risk that is aligned with an accountability model within Archer to manage risk and track key performance indicators to measure the health of the vulnerability management process.”

Jim Routh, CISO
Depository Trust & Clearing Corporation

 

 

 

Website Risk Management  |  Sentinel Services  |  Support Plus  |  Education Services  |  Events & News  |   Resources  |   Partners  |   About WhiteHat
2010 © Copyright  |  WhiteHat Security, Inc.  |  3003 Bunker Hill Lane, Santa Clara, CA 95054  |  408.343.8300  |  Contact the Webmaster