Bitdefender GravityZone - Response Integration

Overview

Bitdefender GravityZone is an enterprise endpoint security platform that provides advanced threat detection, EDR capabilities, and centralized security management. This integration enables Logsign USO to perform response actions on GravityZone, such as adding or removing file hashes from the blocklist and updating incident statuses directly from the platform.

In this document, the GravityZone Response integration on Logsign USO will be explained. The integration process consists of two stages.

Prerequisites

  • An active Bitdefender GravityZone Cloud account with administrator privileges.
  • The administrator account must have the following permissions: Manage Networks, Manage Users, Manage Company, and View and Analyze Data.

Configure On Bitdefender GravityZone

API key generation steps are as follows:

  1. Log in to the GravityZone Control Center at https://gravityzone.bitdefender.com using an administrator account.
  2. Click your username in the upper-right corner of the console and select My Account.
  3. Scroll down to the API Keys section and click the Add button.
  4. In the dialog that opens, enter a descriptive name for the key (e.g., "Logsign USO Integration").
  5. From the API permissions list, select Incidents API at minimum. If broader access is needed, additional APIs can be enabled here.
  6. Click Generate.
  7. A window will appear showing your newly generated API key. This key is only visible once — copy it immediately using the copy button and store it in a secure location.
  8. Close the API key window. The key will now appear in the list in an obfuscated format.

Important: After closing the generation window, the full API key cannot be retrieved again from the console. If lost, the key must be deleted and a new one must be generated.

Configure On Logsign USO

Integration settings are completed as follows:

  1. Log in to the Logsign USO UI.
  2. Click Settings > Integrations > Responses.
  3. In the Search field, type Bitdefender.
  4. Click Configure and then click +Device.
  5. Define the settings as follows:
    • Device Name: Enter a name to identify this integration.
    • Company ID: Enter the Company ID value provided during the integration setup. This value is supplied by the source configuration screen.
    • API Key: Paste the API key generated in the previous section.
  6. Click Create to complete the setup.
Was this article helpful?
0 out of 0 found this helpful

Articles in this section

Become a Certified Logsign User/Administrator
Sign-up for Logsign Academy and take the courses to learn about Logsign USO Platform in detail. Enjoy the courses, and get your badges and certificates. In these courses, you'll learn how to use Logsign in your work and add value to your career.
Visit Our Blog
Our Logsign USO Platform illustrate our expertise. So do the blog. Through our blog posts, deepen your knowledge on various SecOps topics or get updated about important news & modern approaches for cybersecurity. Get into the habit of reading valuable information provided by Logsign. Be a step ahead.