Tenable.io

To import Tenable.io asset and vulnerability data to the Anomali Agentic SOC Operations for asset management, you must first configure the Tenable.io integration on the Integrations Marketplace page. For details on asset management within the Anomali Agentic SOC Operations, see Assets.

Before You Begin

Before configuring the Tenable.io integration, you must obtain your API  Access Key and Secret Key from Tenable.io. For details, see Manage API Keys.

Required permissions

Your Tenable.io API key must have at least basic user permissions. Read access to asset data is included by default for all users and is sufficient to run this integration.

Configuring the Tenable.io Integration

To configure the Tenable.io integration:

  1. Navigate to ThreatStream Next Gen > Integrations Marketplace > Entity Sources.

  2. Click the three-dot vertical menu on the Tenable.io tile and then click Configure.


    Alternatively, click the Tenable.io tile and then click Connect.

  3. On the Configure Tenable.io page that opens, enter the following details:

    Field Name Description
    Name Name of the integration.
    Description (Optional) Description for the integration.
    Credentials
    Access Key Tenable.io API access key.
    Secret Key Tenable.io API secret key.
    Sync Settings
    Sync Frequency Interval for incremental syncs. Default: Hourly.
    Run full sync on connect When enabled, all existing Tenable.io records are imported on first connection. The setting is enabled by default.
  4. Click Create.

The Tenable.io integration is activated. Confirm that the integration status shows Active and health shows Healthy.

On the integration details page, you can view the integration status, health, the date and time of the last synchronization with the source, the synchronization schedule, and the number of assets discovered in the configuration. From this page, you can also force a synchronization, edit, deactivate, or delete the integration configuration. For details, see Managing Integrations.