denimgroup / threadfix

ThreadFix is a software vulnerability management platform. This GitHub site is far out of date. Please go to www.threadfix.it for up-to-date information.
340 stars 127 forks source link

Automating Jira tickets creation process #1786

Open Ranybaug opened 6 years ago

Ranybaug commented 6 years ago

Hello,

We are looking for automation, where once we completes SAST and DAST scans and reports gets synched into ThredFix . Then , since we know we can create Jira ticktes manually using Defect Tracker , Can we automate this process ? e.g. If we want to have ThreadFix to create Jira tickets for High severity and medium severity or similar such policy settings , then TheradFix would create Jira tickets automatically . Please let us know if this is possible ? or there is already such feature ?

Regards, Rany

ThreadFix commented 6 years ago

Rany, we absolutely support that in our enterprise product. You can find information about the enterprise product here: https://denimgroup.atlassian.net/wiki/spaces/TDOC/pages

The enterprise product has defect creation profiles you can define to work in your exact use case. We will also allow you to optionally bundle your new vulns together into defects based on severity, CWE’s, or both.

Thank you, Kyle