# Tenable Security Center

Tenable Security Center (Tenable.sc) is a vulnerability management solution that provides visibility into the security posture of IT infrastructure. It consolidates and evaluates vulnerability data, illustrates vulnerability trends over time, and assesses risk with actionable context for effective remediation prioritization, which then can be imported as findings into PlexTrac via API.&#x20;

Multiple integrations can be configured per instance or for specific clients.

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2F6R3DSRFE52j1fI2Zxlno%2FTenable-Logo2021.png?alt=media&#x26;token=a9017b38-7c59-402c-9758-e8922bc460ed" alt="" width="188"><figcaption></figcaption></figure></div>

{% hint style="info" %}
This is a licensed feature.
{% endhint %}

## Field Mappings

Below are the field mappings from Tenable to PlexTrac, broken up by findings and assets.&#x20;

Tables include the following columns:

* **Tenable SC Field:** the field name in Tenable SC
* **Direction:** displays the direction in the flow of data occurring for the integration
* **PlexTrac Field:** the field name in PlexTrac

{% hint style="info" %}
PlexTrac only imports vulnerabilities that Tenable has not archived.&#x20;
{% endhint %}

### Findings Field Mappings

If a field is not listed, then PlexTrac does not currently import.

| Tenable SC Field      | Direction | PlexTrac Field                                |
| --------------------- | :-------: | --------------------------------------------- |
| Vulnerability Name    |    -->    | Finding Name                                  |
| Description           |    -->    | Description                                   |
| Solution              |    -->    | Recommendations                               |
| See Also              |    -->    | References                                    |
| Status                |           |                                               |
| *Active*              |    -->    | *Finding="OPEN"*                              |
| *New*                 |    -->    | *Finding="OPEN"*                              |
| Severity              |           |                                               |
| *Info*                |    -->    | *Informational*                               |
| *Low*                 |    -->    | *Low*                                         |
| *Medium*              |    -->    | *Medium*                                      |
| *High*                |    -->    | *High*                                        |
| *Critical*            |    -->    | *Critical*                                    |
| CVE                   |    -->    | CVE                                           |
| CVSS3                 |    -->    | Score Type                                    |
| CVSS3                 |    -->    | Score Vector                                  |
| CVSS3                 |    -->    | CVSS Score                                    |
| Vulnerability Age     |    -->    | Custom Field "Tenable Vulnerability Age"      |
| CVSS V3 Impact Score  |    -->    | Custom Field "Tenable CVSS V3 Impact Score"   |
| Exploit Code Maturity |    -->    | Custom Field: "Tenable Exploit Code Maturity" |
| Product Coverage      |    -->    | Custom Field: "Tenable Product Coverage"      |
| Threat Intensity      |    -->    | Custom Field: " Tenable Threat Intensity"     |
| Threat Recency        |    -->    | Custom Field: " Tenable Threat Recency"       |
| Threat Sources        |    -->    | Custom Field: " Tenable Threat Sources"       |
| Patch Published       |    -->    | Custom Field: "Tenable Patch Published"       |
| Exploit Available     |    -->    | Custom Field: " Tenable Exploit Available"    |
| Exploitability Ease   |    -->    | Custom Field: " Tenable Exploitability Ease"  |
| Plugin Id             |    -->    | Custom Field: " Tenable Plugin Id"            |

### Assets Field Mappings

If a field is not listed, then PlexTrac does not currently import.

| Tenable SC Field | Direction | PlexTrac Field   |
| ---------------- | :-------: | ---------------- |
| Plugin Output    |    -->    | Scan Output      |
| Asset Name       |    -->    | Asset Name       |
| IP               |    -->    | Know IP Address  |
|                  |    -->    | Host Name        |
| Operating System |    -->    | Operating System |
| MAC Address      |    -->    | MAC Address      |
| Port             |    -->    | Port             |
| Protocol         |    -->    | Protocol         |

## Deduplication Logic <a href="#deduplication-logic" id="deduplication-logic"></a>

PlexTrac will not import findings from Tenable that have the same combination of `plugin ID` and `severity`.&#x20;

## Integrating Security Center

<mark style="background-color:yellow;">Step 1</mark>: From the **Admin Dashboard**, click **Integrations** under "Tools & Integrations."

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2FPfOFC2mGRPbsurePegwS%2Fimage.png?alt=media&#x26;token=d90f4c72-0428-4727-a133-87d3de55db3f" alt="" width="348"><figcaption></figcaption></figure></div>

<mark style="background-color:yellow;">Step 2</mark>: If licensed, the option to connect will appear (if not, the box will display a lock icon and "License required"). Click the **Tenable** box.

<figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2F8C52Li5HkFyCi90126Ww%2Fimage.png?alt=media&#x26;token=53bda20d-450e-4537-8f8a-65ff4ad4da71" alt=""><figcaption></figcaption></figure>

<mark style="background-color:yellow;">Step 3:</mark> Enter a connection name and select if this integration is across the tenancy or for a client (if specific to one client, select the client of the pulldown menu). Click **Continue**.

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2FsjSvp2fF6NbhRl1hyCdL%2Fimage.png?alt=media&#x26;token=6c73de06-5a2c-47d7-a45f-6c6701886561" alt=""><figcaption></figcaption></figure></div>

<mark style="background-color:yellow;">Step 4:</mark> Select "Connect to Tenable Security Center." Enter the Tenable URL, access key, and secret key. Click **Continue**.&#x20;

{% hint style="info" %}
Visit the [Tenable documentation site](https://docs.tenable.com/security-center/Content/GenerateAPIKey.htm) for more information on generating API keys.&#x20;
{% endhint %}

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2FAvNdrkuNPzBAuJFsFSXA%2Fimage.png?alt=media&#x26;token=095b5d46-7eba-4c36-98b0-5ba45829dbb9" alt=""><figcaption></figcaption></figure></div>

If the keys are correct, a confirmation message will confirm successful synchronization.&#x20;

<mark style="background-color:yellow;">Step 5:</mark> Edit the field mappings on the provided tabs for findings and assets, or continue using the defaults.&#x20;

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2FREZZP3IMgCw9AymLBRcg%2Fimage.png?alt=media&#x26;token=a2f7c870-0a79-4b7c-bb6e-9275ab4d3dce" alt=""><figcaption></figcaption></figure></div>

Information flows only from Tenable to PlexTrac. Fields required by PlexTrac are identified with a red asterisk.&#x20;

Fields that can be deleted will have an "X" next to the PlexTrac field when hovering over with the cursor. A confirmation message will appear after clicking **X**.

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2F9AQPOvHnxkpqAqY7umSG%2Fimage.png?alt=media&#x26;token=2d59f959-8d73-4395-8632-063a138f44dd" alt=""><figcaption></figcaption></figure></div>

Configurable fields can be adjusted by clicking the purple line and deleting the existing connection.&#x20;

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2FZ8LJxmqyBr7V4cXF3f2T%2Fimage.png?alt=media&#x26;token=26a8e7c7-d61c-416e-aee4-5d68fb1b5b84" alt=""><figcaption></figcaption></figure></div>

Click on the Tenable field, then click on the desired PlexTrac field to map and create a new connection.

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2FWqiAnfFJgCjTcHpDS2tS%2Fimage.png?alt=media&#x26;token=b9339f74-8b0c-44ea-a21f-cdac1b619d37" alt=""><figcaption></figcaption></figure></div>

Click **Continue** when finished.

The integration appears in the table as a listed connection.&#x20;

## Synchronizing

PlexTrac offers two synchronization options for Tenable integrations.

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2FExnM7YIStLFuiiBurCJp%2Fimage.png?alt=media&#x26;token=be67dbc3-a1e2-4af9-ad0d-f44b784fe7ae" alt=""><figcaption></figcaption></figure></div>

1. **Sync:** This option allows an off-cycle synchronization and typically takes less than ten minutes.
2. **Full Sync:** This option examines the complete Tenable database. It may take several hours, but it occurs in the background and doesn't hinder using PlexTrac for other tasks.

### Synchronization History

To view sync history, click **Synch history** under the integration actions menu.

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2FyghDqajQ5hpVKqTlU1bt%2Fimage.png?alt=media&#x26;token=a676ebfb-c680-445b-8139-03cf7d42d631" alt=""><figcaption></figcaption></figure></div>

<figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2Fp8gnRh0YCuk2BsDV6qcj%2Fimage.png?alt=media&#x26;token=ee5f82af-8e98-4e46-8ad9-7ac18567e819" alt=""><figcaption></figcaption></figure>

## Managing Integrations

Any existing integration can be disabled temporarily or deleted if no longer needed.&#x20;

### Disabling an Integration

To disable an integration, click the toggle button for the integration under the "Enabled" column. This action also disables the ability to synchronize the integration.

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2FcWV3Ls84ryUgtn1a8f9y%2Fimage.png?alt=media&#x26;token=c4c46846-d81f-4680-8b90-708e2fc33452" alt=""><figcaption></figcaption></figure></div>

### Deleting an Integration

To delete an integration, click the three dots under the "Actions" column and then **Delete**.

<div align="left"><figure><img src="https://4252973360-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-LXA6EayCcg12qfDcfXd%2Fuploads%2FNOtNNinWIQWf2kveF0h0%2Fimage.png?alt=media&#x26;token=04094519-329e-4a9f-98c6-382b4d714af3" alt=""><figcaption></figcaption></figure></div>


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://docs.plextrac.com/plextrac-documentation/product-documentation-1/account-management/account-admin/integrations-and-webhooks/integrations-api/tenable-security-center.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
