Skip to content

[Internal]: Add docs for Rapid7 Integration #2092

@nick-alayil

Description

@nick-alayil

Description

Description

Create documentation for the Rapid7 integration that now aligns with the CDR guide for data normalization. The integration now support enumeration in the native vulnerability findings workflow and provide out-of-the-box contextualization as Insights within alert and entity flyouts.

The main goal of this documentation is to inform readers that Rapid7 is now supported as part of our third party integrations with native workflow support. For more in-depth guidance, you can always direct users to dedicated Tenable IO documentation which is available separately.

Requirements

Acceptance Criteria

  • Create new documentation page under Cloud Security → Ingest third-party cloud security data

Version Info

Supported from Rapid7 integration version 2.0.0

Notes

  • No integration specific configuration steps required (unlike AWS Security Hub & Wiz)
  • We may need to revisit the structure of this documentation later, since tools like Qualys / Teanble IO / Rapid7 don’t fit neatly under just "cloud security" as they support on-prem infra, IT infra etc.. .

Resources

https://docs.elastic.dev/security-solution/cloud-security/cdr/3p-dev-guide
https://github.com/elastic/security-team/issues/9989
elastic/integrations#14079

Which documentation set does this change impact?

Elastic On-Prem and Cloud (all)

Feature differences

The feature is identical in all deployments

What release is this request related to?

9.1

Serverless release

Catching up (The week of June 23, 2025)

Collaboration model

The documentation team

Point of contact.

Main contact: @nick-alayil

Stakeholders: @nick-alayil @maxcold @alexreal1314 @kcreddy

Metadata

Metadata

Assignees

Labels

Team:IngestIssues owned by the Ingest Docs Team

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions