GuardDuty
Parny | AWS GuardDuty Integration Guide
Parny supports direct integration with GuardDuty alerts. GuardDuty is a network and system monitoring tool that can create alarms to detect and prevent potential problems. This documentation explains how to redirect alarms created in GuardDuty to a webhook using Parny.
Parny Settings
Go to the Parny interface.
Navigate to the "Services" section of your organization.
Click on the "New Services" option in the upper right corner.
Enter the relevant service name.
Service Name Usage: The service name here is independent of the structure and can be chosen according to the preferences of the organization.
Select GuardDuty from the list of integrations.
Click "Add".
After the service is created, the following screen will appear.

You can now click on the token section of your service and copy your GuardDuty Webhook URL.
AWS GuardDuty Configuration
In this section, we will guide you through "Creating a Rule in AWS EventBridge" and "Redirecting Alarms".
Step 1: Creating a Rule in AWS EventBridge
Sign in to the AWS Management Console and open the Amazon EventBridge console at https://console.aws.amazon.com/events/.
In the left navigation pane, click on "Event buses."
Choose the event bus you want to create a rule for or create a new event bus if necessary.
Click on the "Create rule" button.

Provide a name and description for the rule.
Under the "Define pattern" section, choose "Event pattern."

Select "Pre-defined pattern by service."
Choose "AWS" as the service provider.
Select "GuardDuty" as the service name.
Choose the specific event type you want to trigger alerts, for example, "Finding".
Click on "Save" to create the rule.
Step 2: Redirecting Alarms
In the "Select targets" section of the rule you just created, click on "Add target."
Choose target type and then if there is no api destination, create one.
Type the "API destination endpoint" which is the Parny API URL, which is included in the Parny settings step and contains your service token that you have received on the Parny portal. Then choose POST as a "HTTP method".

Then choose destination part as others and define authorization type. After that choose execution role.
Optionally, tags can be added, the step after that, review your target and click "save" button.
With these settings, your AWS GuardDuty alarms will be forwarded to Parny, allowing you to manage them alongside your other alerts within your organization's Parny interface.
Check out these other integrations
Seamlessly use your preferred tools for unified work, start to finish.