Cyberwatch Integration with DefectDojo
Cyberwatch is a comprehensive vulnerability and compliance management platform that enables organizations to detect, prioritize, and remediate security vulnerabilities across servers, workstations, network devices, and containers through automated scanning with agent-based or agentless deployment methods. Cyberwatch utilizes a 3D prioritization methodology combining CVSS scores, EPSS data, and authority alerts to help security teams focus on the most critical vulnerabilities, while also providing compliance assessment capabilities, patch management functionality, and an integrated CVE knowledge base for informed decision-making.
Data Granularity: What Gets Imported
The following fields are captured from Cyberwatch results and surfaced in DefectDojo findings:
| Field | Source | Notes |
|---|---|---|
| Title | Finding name from the scan | Matched to the tool's own naming |
| Severity | Critical / High / Medium / Low / Info | Mapped from the tool's own severity scale |
| Description | Finding detail from the report | Includes what the issue is and why it matters |
| Mitigation | Remediation guidance | Where the tool provides it |
Importing Into DefectDojo
Use the DefectDojo import API to create a new Test under the relevant Engagement for your product. The request body:
{
"scan_type": "Cyberwatch",
"engagement": "<engagement-id>",
"file": "results.json"
}