Skip to main content

Integrations

Connects to Your Existing Stack

SIEM, SSO, notifications, and cloud APIs. CISGuard fits into your infrastructure — you don't adapt to ours.

SIEM & Security Operations

Forward compliance events to your SIEM for unified security monitoring.

Syslog (RFC 5424)

Professional+

UDP, TCP, and TLS transport. Compatible with Splunk, Sentinel, QRadar, ArcSight, Graylog.

CEF (Common Event Format)

Enterprise

ArcSight-standard CEF format over Syslog. Maps CIS controls to CEF severity/name fields.

JSON/HTTPS with HMAC-SHA256

Enterprise

REST webhook with cryptographic signature verification. Post events to any HTTPS endpoint.

Identity & Access

Single sign-on and directory integration for enterprise identity management.

Azure Entra ID (Azure AD)

Professional+

MSAL v5 redirect flow with tenant validation, token refresh, and automatic user provisioning.

SAML 2.0

Enterprise

Works with Okta, AD FS, PingIdentity, OneLogin, and any SAML 2.0 IdP. One-time auth code exchange.

LDAP / Active Directory

Enterprise

Two-step bind+search with JIT provisioning. Map AD security groups to CISGuard roles automatically.

MFA / TOTP

All plans

Time-based one-time passwords with recovery codes. Per-role MFA enforcement policy.

Notifications & Alerting

Get notified the moment compliance drifts. Route alerts by severity and benchmark.

Microsoft Teams

Professional+

Adaptive card notifications with compliance score, benchmark name, and direct link to dashboard.

Email (SMTP)

All plans

HTML email alerts via any SMTP server. Office 365, Gmail, SendGrid, or on-premises Exchange.

Webhook

Professional+

JSON POST to any endpoint. Includes HMAC-SHA256 signature for payload verification.

ServiceNow

Enterprise

Create incidents automatically when critical compliance failures are detected.

Cloud & Infrastructure

Agentless scanning of cloud resources via native APIs.

Microsoft Azure

Professional+

Azure Resource Manager API for Foundation, Compute, and AKS benchmark scanning. OAuth2 client credentials.

Amazon Web Services

Professional+

IAM, CloudTrail, S3, VPC, RDS, EBS, EKS scanning via access key or assumed role.

Microsoft 365

Professional+

Microsoft Graph API for Exchange Online, SharePoint, Teams, and Entra ID policy scanning.

Kubernetes / OpenShift

Professional+

K8s API server scanning via bearer token. Supports AKS, EKS, self-hosted, and OpenShift.

Need a Custom Integration?

Our webhook and REST API support any integration. Enterprise customers get dedicated engineering support for custom connectors.

Request Demo
Chat on WhatsApp