ManageEngine ServiceDesk Plus
The ManageEngine ServiceDesk Plus connector integrates with a ManageEngine ServiceDesk Plus (on-premises) instance using its REST API (v3). It synchronizes service desk **Requests** (tickets/incidents) into Brinqa, capturing requester, technician, status, priority, SLA, category, and lifecycle/timing details. The connector also supports creating and updating Requests in ServiceDesk Plus.
Mandiant
Mandiant
Mend.io
The Mend connector (formerly WhiteSource) integrates with the [Mend](https://www.mend.io/) software composition analysis (SCA) platform. It uses the Mend Organization API to discover the products and projects in an organization and to retrieve the open source libraries, security vulnerabilities, and policy alerts associated with them.
Microsoft
8 items
Mitre Attack
The MITRE ATT&CK Connector fetches and synchronizes offensive security data from the MITRE ATT&CK framework. It reads the official MITRE ATT&CK data published in STIX 2.1 format from the public `attack-stix-data` repository, discovers the available collections (Enterprise, Mobile, ICS) from the repository index, and processes the STIX objects into Brinqa Data Model objects. STIX `relationship` objects are loaded into an in-memory relationship store and used to enrich each object with correlation attributes (parent/child techniques, mitigations, threat groups, malware, tools, and campaigns).
Mitre Defend
The MITRE D3FEND Connector fetches defensive cybersecurity countermeasures from the MITRE D3FEND knowledge base. It connects to the public D3FEND API to synchronize defensive techniques, defensive tactics, and the offensive (ATT&CK) techniques that D3FEND maps to. Defensive techniques are enriched with detail-level data (ATT&CK correlations, CWE weaknesses, digital artifacts, references, and sub-technique hierarchy) fetched per-technique using a configurable parallel thread pool.
NetBox
The NetBox connector integrates with [NetBox](https://netbox.dev/), an open-source infrastructure resource modeling (IRM) platform for network and data center operations. The connector synchronizes virtualization, device, and IPAM data — virtual machines, devices, clusters, prefixes (subnets), and VLANs — from a NetBox instance into Brinqa.
NetSPI
The NetSPI connector retrieves data from the NetSPI platform, which provides penetration testing and vulnerability management services. The connector allows Brinqa to integrate with NetSPI to import findings, assets, and project information for enhanced security management and analysis.
NIST NVD
The NIST NVD Connector integrates with the [National Vulnerability Database (NVD)](https://nvd.nist.gov/) maintained by the U.S. National Institute of Standards and Technology, together with the [CWE catalog](https://cwe.mitre.org/) published by MITRE. It synchronizes three datasets
Noname Security
The Noname Security Connector integrates with the [Noname Security](https://nonamesecurity.com/) API security platform. It syncs discovered API endpoints, the sites (hosts) those endpoints belong to, and the security findings detected against them. Findings are split into two models: a finding instance (a specific issue observed on a specific API) and a finding definition (the reusable description of the issue type, including impact, remediation, and OWASP classification). Together these models let Brinqa correlate API-layer vulnerabilities back to the assets they affect.
NowSecure Auto
The NowSecure Auto connector integrates with the [NowSecure](https://www.nowsecure.com/) mobile application security testing (MAST) platform. It syncs mobile applications, security assessments, and the static and dynamic code findings (and their finding definitions) produced by NowSecure automated assessments, along with vulnerability audit records that track the lifecycle of each finding across assessments and app versions.
Obsidian Security
Obsidian Security
Offensity
Brinqa connector for [Offensity](https://www.offensity.com/) — External Attack Surface Management (EASM) / external vulnerability scanning. It discovers an organization's external **domains** and the vulnerabilities found across them, and maps them onto the Brinqa unified data model as **Site** assets, **Violation Definitions**, and **Violations**. The asset is the domain (UDM `Site`); subdomains roll up onto it as an attribute, and violations target the domain. Scan profiles and reports are read internally to build the domain inventory and exposure; they are not emitted as objects.
Okta
The Okta Connector integrates with an Okta organization (Workforce Identity Cloud) using the Okta Management API. It synchronizes identity data — Okta groups, group memberships, and users (across all configured Okta user types) — so that people, teams, and their group relationships can be modeled in Brinqa. User records are enriched with every attribute defined on the user type's base and custom profile schemas, in addition to standard lifecycle timestamps and status.
Onapsis
The Onapsis Connector integrates with the [Onapsis](https://onapsis.com/) SAP Security platform to synchronize SAP system assets, vulnerability occurrences, vulnerability definitions, and SAP note implementation statuses. It connects to the Onapsis GraphQL API to fetch security data related to SAP systems, enabling continuous visibility into SAP security posture within Brinqa.
Onspring
Onspring
OpsLevel
The OpsLevel Connector integrates with the [OpsLevel](https://www.opslevel.com/) service catalog and internal developer platform. It uses the OpsLevel GraphQL API to sync the account's catalog into Brinqa, including services, code repositories, teams, users, and infrastructure resources. The connector paginates through each collection using GraphQL cursor-based pagination and maps the results onto Brinqa Unified Data Model (UDM) models such as `Application`, `CodeRepository`, `Team`, `Person`, and `Host`.
Orca
Orca
PagerDuty
The PagerDuty connector integrates with the [PagerDuty](https://www.pagerduty.com/) incident response platform via the PagerDuty REST API (v2). It synchronizes four object types — **Services**, **Teams**, **Users**, and **Incidents** — into the Brinqa platform, enabling visibility into on-call services, the teams responsible for them, the people who staff those teams, and the incidents triggered against them.
PlexTrac
The PlexTrac connector integrates with the [PlexTrac](https://plextrac.com/) penetration-testing and proactive-security platform. It synchronizes the assets, findings, finding definitions, assessments, and client tenants tracked in PlexTrac into Brinqa, allowing pentest results to be unified with the rest of an organization's risk data.
Prisma
2 items
Qualys
7 items
RAD Security
The RAD Security Connector integrates with the [RAD Security](https://rad.security/) platform (formerly KSOC) — a Kubernetes and cloud-native security platform. It synchronizes cloud and Kubernetes inventory, container image scan summaries, deployed agent plugins, and runtime/posture findings into Brinqa.
Rapid7
5 items
Recorded Future
2 items
Red Hat Satellite
The Satellite connector integrates with **Red Hat Satellite** (Foreman/Katello). It syncs managed host inventory along with the content metadata that describes the software running on those hosts: errata (advisories), products, repositories, subscriptions, content packages, and the packages installed on each host. Hosts and packages are mapped to Brinqa asset models; errata and installed packages support vulnerability and software-inventory analysis.
RSA Archer
The RSA Archer Connector integrates with the **RSA Archer Integrated Risk Management (IRM)** platform to synchronize and manage application records. It connects to the **RSA Archer REST APIs** using session-based authentication and retrieves metadata and content records from Archer applications.
runZero
The runZero Connector integrates with the [runZero](https://www.runzero.com/) cyber asset attack surface management (CAASM) platform. It uses runZero's organization export API to synchronize discovered assets and their associated vulnerabilities into Brinqa. The connector syncs three models: **Assets** (network devices discovered by runZero), **Vulnerabilities** (per-asset vulnerability findings), and **Vulnerability Definitions** (the distinct vulnerability metadata derived from those findings, including CVE, severity, and CVSS scoring).

























