Skip to main content

Overview

The BitDefender integration enables ThreatAware to collect read-only data from your Bitdefender GravityZone platform, providing visibility into endpoint protection status and helping validate your security controls.
Connection Method: API Setup Time: 20 minutes Access Required: BitDefender Company Administrator account

Data collected

The BitDefender integration provides:
  • Endpoint protection status
  • Threat detection and response data
  • Security policy compliance metrics
  • Device inventory and health status

Use cases

Endpoint Protection Tracking

Monitor endpoint protection status across all managed devices

Compliance Validation

Verify endpoint protection policies are properly configured

Threat Management

Track threats and security incidents across your environment

Audit Support

Generate reports showing endpoint protection coverage

Setup instructions

1

Log in to Bitdefender GravityZone Portal

Access the Bitdefender GravityZone portal with a Company Administrator account.
2

Create or Select an Admin Account

If needed, create a new admin under Accounts > Add and assign the Company Administrator role.Assign the following permissions:
  • Manage Networks
  • Manage Users
  • Manage Company
  • Manage Reports
Ensure the correct targets to be monitored are selected.
3

Generate API Key

In your account:
  • Click your username in the top left to access My Account
  • Navigate to API Keys and click Add to create a new API key
  • Select both Network API and Accounts API
  • Click Save
  • Copy the generated API Key
4

Retrieve API URL

In your GravityZone account settings:
  • Locate the API URL specific to your GravityZone environment
  • Copy this URL for use in ThreatAware
5

Configure in ThreatAware

Complete the integration setup in ThreatAware:
  • Open ThreatAware and navigate to Settings > Integrations
  • Search for and select BitDefender
  • Enter the required credentials:
    • API Key: The key generated in BitDefender GravityZone
    • API URL: Your GravityZone API URL
  • Click Connect to establish the integration
6

Verify Connection

After connecting, verify the integration status shows as Active in ThreatAware.

Required credentials

Field Name: BitDefender API Key Type: Password (encrypted) Description: The API key created in the BitDefender API Keys section
Store this credential securely in your organisation’s password manager for future reference.
Field Name: BitDefender API URL Type: String Description: The URL specific to your Bitdefender GravityZone environmentFormat: https://cloud.gravityzone.bitdefender.com Example: https://cloud.gravityzone.bitdefender.com or region-specific URL from your account

Verification and testing

After setup, verify the integration is working correctly:
  1. Check Integration Status
    • Navigate to Settings > Integrations in ThreatAware
    • Confirm the BitDefender integration shows Active status
    • Check the last sync timestamp
  2. Verify Data Collection
    • Wait 60 minutes for the initial data poll
    • Search for a known device in ThreatAware
    • Check device details for BitDefender protection status
  3. Test Queries
    • Create a test query to filter devices by BitDefender security status
    • Verify the data matches your expectations

Troubleshooting

Symptoms: Integration status shows authentication failureSolutions:
  • Verify the API Key and API URL match the entries in the BitDefender GravityZone settings
  • Ensure the API key has not expired
  • Check that both Network API and Accounts API are selected
  • Confirm the credentials were entered without extra spaces
Symptoms: Integration connects but no data appears or limited data is availableSolutions:
  • Verify that all necessary permissions are assigned to the admin account
  • Ensure the admin has Manage Networks, Manage Users, Manage Company, and Manage Reports permissions
  • Check if there are organisational policies restricting API access
  • Review BitDefender API Documentation for required permissions
Symptoms: Integration shows active but no endpoint data appearsSolutions:
  • Verify there are managed devices in your BitDefender GravityZone environment
  • Check the API key’s scope and access permissions
  • Ensure devices are properly enrolled and visible in GravityZone
  • Review ThreatAware integration logs (contact support if needed)
Symptoms: Integration fails to connect with timeout errorsSolutions:
  • Verify the API URL is correct and accessible from ThreatAware
  • Check firewall rules allow outbound HTTPS (443) to BitDefender
  • Confirm your GravityZone instance is accessible via the internet
  • Test the URL in a browser to ensure it’s reachable

Additional resources

BitDefender API Documentation

Official BitDefender documentation for API configuration and permissions

ThreatAware Support

Contact ThreatAware support for integration assistance

Best practices

Credential Management
  • Create a dedicated API key specifically for ThreatAware
  • Document credentials in your organisation’s password manager
  • Rotate credentials annually or per your security policy
  • Monitor for authentication failures in ThreatAware regularly
Security Considerations
  • Only grant permissions necessary for monitoring
  • Limit API key scope to relevant networks and devices
  • Review audit logs in BitDefender periodically to monitor API usage
  • Follow your organisation’s least privilege principles