+

ThreatQ Integration

Enrich indicators in your Threat Intelligence Platform with Scamalytics IP reputation data. Automate TDR Orchestration (TQO) workflows to block high-risk IPs.
Get API Key & Deploy →
01

Installation

Perform the following steps to install or upgrade the integration:

  1. Log into https://marketplace.threatq.com/.
  2. Locate and download the action zip file.
  3. Navigate to the integrations management page on your ThreatQ instance.
  4. Click on the Add New Integration button.
  5. Upload the action zip file using one of the following methods:
    - Drag and drop the zip file into the dialog box
    - Select Click to Browse to locate the zip file on your local machine

Note: ThreatQ will inform you if the action already exists or if a new version contains configuration changes. User confirmation is required before overwriting existing actions.

02

Configuration

ThreatQuotient does not issue API keys for third-party vendors. Contact the specific vendor to obtain API keys and other integration-related credentials.

  1. Navigate to your integrations management page in ThreatQ.
  2. Select the Actions option from the Category dropdown (optional).
  3. Click on the action entry to open its details page.
  4. Enter the following parameters under the Configuration tab.

Important: The configurations set on this page will be used as the default settings when inserting this action into a new workflow. Updating the configurations on this page will not update any instances of this action that have already been deployed to a workflow. In that scenario, you must update the action’s configurations within the workflow itself.