Skip to main content

Set up the Rapid7 InsightVM Cloud connector

Rapid7 InsightVM is a vulnerability scanner and management platform for detecting and aggregating both on-premises and cloud vulnerabilities.

Ingesting Rapid7 vulnerability data into Veracode Risk Manager (VRM) helps power risk prioritization and best next actions to ensure that VRM is recommending the best actions to reduce the most risk in your environment.

Create a Rapid7 API key

The VRM connector for Rapid7 InsightVM Cloud requires two key pieces of API access information: the region the tenant is configured and the API key that has permissions to fetch the vulnerability data.

To configure the API key within the Rapid7 platform:

  1. Log in to your Rapid7 Insight account.

  2. From the left menu of the Platform Home page, select Administration.

  3. From the left menu of the Administration page, select API Keys.

  4. Select New User Key.

    New User Key button

  5. In the Generate New User Key panel, select an organization and provide a name for the key.

  6. Generate the key. A new window opens and displays the generated key.

  7. Copy the key to a secure location. You will not be able to view it again after you close the window.

Create a VRM connector

  1. In VRM, from the left navigation menu, select the Settings icon settings_icon.png.
  2. Select Add Connector.
  3. Select the Rapid7 InsightVM Cloud tile.
  4. Enter a name for the connector.
  5. Select the region associated with your tenant from the dropdown.
  6. Enter the API key you generated above.
  7. Select Add Connector.