Skip to main content

Checkmarx One

Integrate Checkmarx One with Cloudaware to ingest application security posture data into CMDB for unified reporting.

info
  • Audience: Cloudaware administrators, AppSec teams
  • Outcome: The Checkmarx One account is connected, and organizations, projects, scans, and KICS results are available in the CMDB for application security reporting

Capabilities

The integration supports:

  • Discovery of Checkmarx One organizations, projects, scans, and KICS results in the CMDB
  • Relationships between application security findings, applications, and code repositories
  • Application security posture reporting by team and application in Cloudaware

Prerequisites

Before you begin, make sure you have:

  • Access to a Cloudaware account.
  • A user with access to the Admin Console and permissions to manage cloud accounts, organizations, and integrations (Cloudaware Administrator).
  • Tenant Name
  • Server Base URL
  • Username
  • API Key

Add a Checkmarx One Account to Cloudaware

To connect your Checkmarx One account to Cloudaware:

  1. In Cloudaware, go to Admin.
  2. Find Checkmarx One, then click + ADD.
  3. Enter the following values:
    • Tenant Name: The Checkmarx One tenant name
    • URL: The Checkmarx One server base URL
    • Username: The username for the Checkmarx One account
    • API Key: The API key
  4. Click SAVE.
  5. Confirm that the integration status indicator is green.

View Checkmarx One Data in CMDB

To browse discovered Checkmarx One resources:

  1. In Cloudaware, open CMDB Navigator.
  2. In the left pane, select CHECKMARX ONE.
  3. Open an object list, e.g., Checkmarx One Projects, to view records.

Supported Objects

Cloudaware ingests the following Checkmarx One objects:

Checkmarx One ObjectCMDB Object API Name
Checkmarx One AccountCA10CO__CaCheckmarxOneAccount__c
Checkmarx One ProjectCA10CO__CaCheckmarxOneProject__c
Checkmarx One ScanCA10CO__CaCheckmarxOneScan__c
Checkmarx One Scan KICS ResultCA10CO__CaCheckmarxOneScanKicsResult__c

Troubleshooting

Authentication Fails or Integration Shows Red Status

  • Regenerate the API key if needed.
  • Verify the Checkmarx One username and API key.
  • Confirm that the user has permission to read the required organizations, projects, scans, and KICS results.
  • Confirm that the Checkmarx One server base URL is correct for the region or tenant.

No Data Appears After a Successful Save

  • Allow the initial discovery cycle to complete.
  • Confirm that the Checkmarx One account contains projects and scans that the configured user can read.
  • In CMDB Navigator, verify that you are viewing the CHECKMARX ONE section and related resources.

Still stuck? Contact Cloudaware Support at support@cloudaware.com with the integration name and a brief description of the issue.

Reconfigure or Remove the Integration

warning

To rotate credentials, edit the existing integration instead of deleting and re-creating it.

Update the Integration Details

  1. Go to Admin.
  2. Select Checkmarx One.
  3. Select the specific integration.
  4. Open the three-dot menu (), then click Edit.
  5. Update the required fields.
  6. Click Save.

Remove the Integration from Cloudaware

  1. Go to Admin.
  2. Select Checkmarx One.
  3. Select the specific integration.
  4. Open the three-dot menu (), then click Delete.
  5. Confirm the deletion if prompted.

Security Notes

  • Use read-only scopes.
  • Rotate API keys regularly.