Proofpoint
Configure the Proofpoint data connector.
In this guide, you will configure the Proofpoint data connector to send click activity into Radiant Security. This gives visibility into phishing links accessed from unmanaged devices, helping identify users who clicked from personal machines and enabling more complete investigations.
At the end of this configuration, you will provide Radiant Security with these values:
Service Principal
Secret
Console URL
To configure the Proofpoint action connector, check out the Proofpoint action connector guide.
Generate Proofpoint TAP service credentials
Sign in to the TAP dashboard.
Navigate to Settings > Connected Applications.
Click Create New Credential.
Name the new credential and click Generate.
Copy the Service Principal and Secret values from the prompt. You’ll provide these values to Radiant Security in the next section.
Important note: Be sure to document and store the Secret value carefully, as it cannot be retrieved later.
Add the data connector in Radiant Security
Log in to Radiant Security.
From the navigation menu, select Settings > Data Connector and click + Add Connector.
Select the Proofpoint API v2 vendor from the list and then click Data Feeds.
Under Select your data feeds, select URL Defense and click Credentials.
Under Credential Name, give the credential an identifiable name (e.g.
Proofpoint Credentials
) .Under Required Credentials, add the following:
Service Principal: Enter the Service Principal value that you copied from the previous section.
Secret: Enter the Secret that you copied from the previous section.
API Base URL: Enter the API Token that you copied from the previous section.
Click Add Connector to save the connector configuration.
Last updated