Notifications
Clear all
Topic starter
14/07/2026 9:42 pm
Hi everyone. I'm trying to get vulnerability data from our Tenable.io scans into Elastic Security. The goal is to have all our security findings in one place.
I've seen mentions of the Tenable API and the Elastic integrations, but I'm unsure about the specific steps. Could someone outline the process? Mainly, I'm curious about:
* Pushing data from Tenable to Elastic vs. pulling it from Elastic.
* If we need to use Logstash or if the Elastic Agent can handle it.
* How the vulnerabilities actually appear in the Elastic SIEM interface once set up.
Any pointers to avoid common setup pitfalls would be really helpful.
Still learning.