Rapid7
Enriching OT and IT asset visibility in Nozomi Vantage with cloud workload inventory and vulnerability data from Rapid7 InsightCloudSec.

Rapid7 InsightCloudSec is a cloud-native application protection (CNAPP) covering cloud security posture, workload protection, identity and access management and compliance across multi-cloud environments. By integrating Rapid7 InsightCloudSec with Nozomi Vantage, security teams gain a consolidated view of managed assets across IT and OT environments — importing cloud workload inventory and vulnerability data directly into Vantage. This enriches the asset registry with authoritative data from the Rapid7 management plane, accelerating incident investigation, reducing blind spots in critical infrastructure environments and enabling analysts to correlate cspm telemetry with OT network observations without switching consoles.

Features
Importer Data Types
Asset Details Enrichment and Create New in Vantage
Asset CPE and CVE Import
Joint Use Cases
Correlating Rapid7 signals with OT network alerts
Closing asset inventory gaps across IT and OT
Prioritizing vulnerability remediation on critical OT assets
Integration Prerequesites
- Active Nozomi Vantage tenant with the connector-configuration role assigned to the administering account
- Rapid7 InsightCloudSec organization with cloud accounts onboarded and an API key issued to a user with read access on the Resource Inventory
- Rapid7 InsightCloudSec module or license that produces per-asset CVE findings enabled in the source tenant
- Consistent hostname, IP or MAC addressing between Rapid7 InsightCloudSec-recorded assets and Vantage-observed assets to enable accurate asset correlation and deduplication
- Outbound network connectivity from Vantage to the source-tool API endpoint over HTTPS (this prerequisite is a deployment placeholder and may be adjusted to match your environment)