Sevco
Overview
The Sevco integration connects the Praetorian Guard Platform (PGP) with Sevco Security's cyber asset attack surface management (CAASM) platform to import consolidated asset inventory, device telemetry, and coverage gap data. Sevco aggregates asset information from multiple sources across your environment, and this integration brings that unified view into PGP for attack surface analysis.
Organizations typically have asset data fragmented across dozens of tools -- endpoint agents, vulnerability scanners, cloud providers, and IT asset management systems. Sevco correlates and deduplicates asset records from these sources to produce a single source of truth. By integrating Sevco with PGP, security teams gain access to this correlated asset intelligence alongside PGP's offensive security perspective, enabling identification of unmanaged devices, coverage gaps, and assets that may be missing from other security tools.
This integration uses the Sevco API in a read-only capacity. PGP queries Sevco for asset and telemetry data and does not modify any configurations, asset records, or policies in your Sevco environment.
What the Integration Does
The Sevco integration queries the Sevco API to retrieve your organization's consolidated asset inventory. For each asset in Sevco, PGP imports device metadata including hostnames, IP addresses, operating system details, and source tool coverage information. The integration also imports coverage gap data, identifying assets that are missing from expected security tools.
Sevco's asset correlation means that a single device may have been observed by multiple tools (e.g., an endpoint agent, a vulnerability scanner, and a cloud provider). The integration imports the correlated asset record, preserving the multi-source context that helps PGP understand which assets are well-managed and which may be blind spots.
All operations are strictly read-only. PGP does not modify, create, or delete any asset records, configurations, or policies in your Sevco environment.
Prerequisites
Before setting up the Sevco integration, ensure you have:
Creating an API Key
Setup
Field Reference
What Data Is Synced
Consolidated Assets (Assets)
The integration imports Sevco's correlated asset inventory into PGP.
Device Telemetry
Telemetry data provides operational context about the state and health of assets.
Coverage Gaps (Risks)
The integration identifies assets that are missing from expected security tool coverage.
API Endpoints Used
The integration uses pagination to handle large asset inventories and respects Sevco API rate limits. All requests are authenticated using the API key.
Required API Permissions
Troubleshooting
Security and Data Handling
The Sevco integration operates in a strictly read-only mode. It queries the Sevco API to retrieve asset inventory and telemetry data and does not modify any asset records, configurations, source integrations, or policies in your Sevco environment.
Credentials are handled securely within PGP. The Sevco API key is encrypted at rest and used exclusively for authenticating API requests during sync operations. The key is not exposed in logs or transmitted to any third party.
PGP imports only device metadata, telemetry summaries, and coverage gap information. No raw logs, event data, or sensitive device content from Sevco is accessed or stored by PGP.