Skip to main content

ReliaQuest GreyMatter DRP Incidents

This Integration is part of the ReliaQuest GreyMatter DRP Incidents Pack.#

Supported versions

Supported Cortex XSOAR versions: 6.0.0 and later.

ReliaQuest GreyMatter DR monitors and manages an organization's digital risk across the widest range of data sources within the open, deep, and dark web. This integration was integrated and tested with version v1 of ReliaQuest GreyMatter DRP Incidents.

This is the default integration for this content pack when configured by the Data Onboarder in Cortex XSIAM.

Configure ReliaQuest GreyMatter DRP Incidents on Cortex XSOAR#

  1. Navigate to Settings > Integrations > Servers & Services.

  2. Search for ReliaQuest GreyMatter DRP Incidents.

  3. Click Add instance to create and configure a new integration instance.

    ParameterDescriptionRequired
    Fetch incidentsStart fetching incidentsFalse
    DS SearchLight API URLEnter the Digital Shadows SearchLight API URLTrue
    Account IDAccount ID associated with this account.True
    API KeyEnter the API Key for this account.True
    API SecretEnter the API Secret for this account.True
    Trust any certificate (not secure)Verify certificateFalse
    Risk TypesRemove all if you don't want to select all risk types, and then select specificallyTrue
    Risk LevelRemove all if you don't want to select all risk types, and then select specificallyFalse
    Ingest Closed / Auto-rejected AlertsIf you don't want to ingest rejected/resolved/closed incidents then set it to False. Otherwise incidents will ingested with auto-closed=TrueFalse
    Fetch LimitThe maximum number of incidents to fetchTrue
    Incidents Fetch IntervalThis controls how often the integration will perform a fetch_incidents commandFalse
    Start dateSince when want to fetch the data with given format(%Y-%m-%dT%H:%M:%SZ)True
  4. Click Test to validate the URLs, token, and connection.

Commands#

You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook. After you successfully execute a command, a DBot message appears in the War Room with the command details.

ds-search#


Perform a general search against incidents, threats closed sources, etc.

Base Command#

ds-search

Input#

Argument NameDescriptionRequired
queryNo description provided.Required

Context Output#

There is no context output for this command.