Tenable Security Center
Last updated
Last updated
© 2024 PlexTrac, Inc. All rights reserved.
Tenable Security Center (Tenable.sc) is a vulnerability management solution that provides visibility into the security posture of IT infrastructure. It consolidates and evaluates vulnerability data, illustrates vulnerability trends over time, and assesses risk with actionable context for effective remediation prioritization, which then can be imported as findings into PlexTrac via API.
Multiple integrations can be configured per instance or for specific clients.
This is a licensed feature.
Below are the field mappings from Tenable to PlexTrac, broken up by findings and assets.
Tables include the following columns:
Tenable SC Field: the field name in Tenable SC
Direction: displays the direction in the flow of data occurring for the integration
PlexTrac Field: the field name in PlexTrac
PlexTrac only imports vulnerabilities that Tenable has not archived.
If a field is not listed, then PlexTrac does not currently import.
If a field is not listed, then PlexTrac does not currently import.
PlexTrac will not import findings from Tenable that have the same combination of plugin ID
and severity
.
Step 1: From the Admin Dashboard, click Integrations under "Tools & Integrations."
Step 2: If licensed, the option to connect will appear (if not, the box will display a lock icon and "License required"). Click the Tenable box.
Step 3: Enter a connection name and select if this integration is across the tenancy or for a client (if specific to one client, select the client of the pulldown menu). Click Continue.
Step 4: Select "Connect to Tenable Security Center." Enter the Tenable URL, access key, and secret key. Click Continue.
Visit the Tenable documentation site for more information on generating API keys.
If the keys are correct, a confirmation message will confirm successful synchronization.
Step 5: Edit the field mappings on the provided tabs for findings and assets, or continue using the defaults.
Information flows only from Tenable to PlexTrac. Fields required by PlexTrac are identified with a red asterisk.
Fields that can be deleted will have an "X" next to the PlexTrac field when hovering over with the cursor. A confirmation message will appear after clicking X.
Configurable fields can be adjusted by clicking the purple line and deleting the existing connection.
Click on the Tenable field, then click on the desired PlexTrac field to map and create a new connection.
Click Continue when finished.
The integration appears in the table as a listed connection.
PlexTrac offers two synchronization options for Tenable integrations, allowing off-cycle syncs in addition to the regular hourly script.
Sync: This option allows an off-cycle synchronization off cycle and typically takes less than ten minutes.
Full Sync: This option looks at the complete Tenable database. It can be several hours, although it happens in the background and does not prevent using PlexTrac for other tasks.
To view sync history, click Synch history under the actions menu of the integration.
Any existing integration can be disabled temporarily or deleted if no longer needed.
To disable an integration, click the toggle button for the integration under the "Enabled" column. This action also disables the ability to synchronize the integration.
To delete an integration, click the three dots under the "Actions" column and then Delete.
Tenable SC Field | Direction | PlexTrac Field |
---|---|---|
Tenable SC Field | Direction | PlexTrac Field |
---|---|---|
Vulnerability Name
-->
Finding Name
Description
-->
Description
Solution
-->
Recommendations
See Also
-->
References
Status
Active
-->
Finding="OPEN"
New
-->
Finding="OPEN"
Severity
Info
-->
Informational
Low
-->
Low
Medium
-->
Medium
High
-->
High
Critical
-->
Critical
CVE
-->
CVE
CVSS3
-->
Score Type
CVSS3
-->
Score Vector
CVSS3
-->
CVSS Score
Vulnerability Age
-->
Custom Field "Tenable Vulnerability Age"
CVSS V3 Impact Score
-->
Custom Field "Tenable CVSS V3 Impact Score"
Exploit Code Maturity
-->
Custom Field: "Tenable Exploit Code Maturity"
Product Coverage
-->
Custom Field: "Tenable Product Coverage"
Threat Intensity
-->
Custom Field: " Tenable Threat Intensity"
Threat Recency
-->
Custom Field: " Tenable Threat Recency"
Threat Sources
-->
Custom Field: " Tenable Threat Sources"
Patch Published
-->
Custom Field: "Tenable Patch Published"
Exploit Available
-->
Custom Field: " Tenable Exploit Available"
Exploitability Ease
-->
Custom Field: " Tenable Exploitability Ease"
Plugin Id
-->
Custom Field: " Tenable Plugin Id"
Plugin Output
-->
Scan Output
Asset Name
-->
Asset Name
IP
-->
Know IP Address
-->
Host Name
Operating System
-->
Operating System
MAC Address
-->
MAC Address
Port
-->
Port
Protocol
-->
Protocol