Skip to main content
Process-IT Add-on for Cyberwatch app icon

Process-IT Add-on for Cyberwatch

Collects vulnerability, asset, compliance, and security issue data from the Cyberwatch API and normalizes vulnerability events to the CIM Vulnerabilities data model to work with Splunk Enterprise Security.Built by Thomas Dussossoy
splunk product badge

Default Version 1.0.1

September 13, 2026

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0

CIM Version: 8.x

Rating
5
(3)

Log in to rate this app

Support
Developer Supported

The Process-IT Add-on for Cyberwatch collects vulnerability management data from the Cyberwatch API and normalizes it to the Splunk Common Information Model. The add-on provides thirteen modular inputs that collect assets, agents, nodes, groups, operating systems, discoveries, discovery assets, application scans, vulnerabilities, compliance findings, security issues, and catalog data. Vulnerability events are formatted at one event per asset and CVE, which matches the grain expected by the Vulnerabilities data model. This granularity enables direct use with Splunk Enterprise Security. Provides enrichment capabilities through a CVE catalog input that adds descriptions, CWE identifiers, and EUVD references to vulnerability events. The add-on includes configuration and input management dashboards, supports both standalone and distributed Splunk deployments. The Process-IT App for Cyberwatch provides the dashboards covering the data ingested by this Add-on. https://splunkbase.splunk.com/app/9762