Checkmarx One
Integrate Checkmarx One with Cloudaware to ingest application security posture data into CMDB for unified reporting.
info
- Audience: Cloudaware administrators, AppSec teams
- Outcome: The Checkmarx One account is connected, and organizations, projects, scans, and KICS results are available in the CMDB for application security reporting
Capabilities
The integration supports:
- Discovery of Checkmarx One organizations, projects, scans, and KICS results in the CMDB
- Relationships between application security findings, applications, and code repositories
- Application security posture reporting by team and application in Cloudaware
Prerequisites
Before you begin, make sure you have:
- Access to a Cloudaware account.
- A user with access to the Admin Console and permissions to manage cloud accounts, organizations, and integrations (Cloudaware Administrator).
- Tenant Name
- Server Base URL
- Username
- API Key
Add a Checkmarx One Account to Cloudaware
To connect your Checkmarx One account to Cloudaware:
- In Cloudaware, go to Admin.
- Find Checkmarx One, then click + ADD.
- Enter the following values:
- Tenant Name: The Checkmarx One tenant name
- URL: The Checkmarx One server base URL
- Username: The username for the Checkmarx One account
- API Key: The API key
- Click SAVE.
- Confirm that the integration status indicator is green.
View Checkmarx One Data in CMDB
To browse discovered Checkmarx One resources:
- In Cloudaware, open CMDB Navigator.
- In the left pane, select CHECKMARX ONE.
- Open an object list, e.g., Checkmarx One Projects, to view records.
Supported Objects
Cloudaware ingests the following Checkmarx One objects:
| Checkmarx One Object | CMDB Object API Name |
|---|---|
| Checkmarx One Account | CA10CO__CaCheckmarxOneAccount__c |
| Checkmarx One Project | CA10CO__CaCheckmarxOneProject__c |
| Checkmarx One Scan | CA10CO__CaCheckmarxOneScan__c |
| Checkmarx One Scan KICS Result | CA10CO__CaCheckmarxOneScanKicsResult__c |
Troubleshooting
Authentication Fails or Integration Shows Red Status
- Regenerate the API key if needed.
- Verify the Checkmarx One username and API key.
- Confirm that the user has permission to read the required organizations, projects, scans, and KICS results.
- Confirm that the Checkmarx One server base URL is correct for the region or tenant.
No Data Appears After a Successful Save
- Allow the initial discovery cycle to complete.
- Confirm that the Checkmarx One account contains projects and scans that the configured user can read.
- In CMDB Navigator, verify that you are viewing the CHECKMARX ONE section and related resources.
Still stuck? Contact Cloudaware Support at support@cloudaware.com with the integration name and a brief description of the issue.
Reconfigure or Remove the Integration
warning
To rotate credentials, edit the existing integration instead of deleting and re-creating it.
Update the Integration Details
- Go to Admin.
- Select Checkmarx One.
- Select the specific integration.
- Open the three-dot menu (⋮), then click Edit.
- Update the required fields.
- Click Save.
Remove the Integration from Cloudaware
- Go to Admin.
- Select Checkmarx One.
- Select the specific integration.
- Open the three-dot menu (⋮), then click Delete.
- Confirm the deletion if prompted.
Security Notes
- Use read-only scopes.
- Rotate API keys regularly.