TrustCloud launches Application Assurance: AI-native continuous control monitoring for enterprises. Read more →

Auth0

Estimated reading: 2 minutes 3094 views

Set up Auth0 for automated tests with TrustCloud

TrustCloud’s API-based integrations map seamlessly to your frameworks and controls to power automated evidence collection, continuous monitoring, and predictive risk analysis. Let’s explore how you can set up Auth0 for automated tests.

By granting TrustCloud limited access to metadata through a service principal account, you can ensure that your systems remain compliant with your adopted controls. TrustCloud’s focus on trust, security, and simplifying compliance makes it a valuable asset in the GRC landscape.

Read our GRC Launchpad article: Integrations to learn more.

Explore 100+ evidence collection integrations to power evidence collection and real-time risk analysis.

Purpose

Once you set up your compliance program, TrustOps works to ensure that your systems remain compliant with your adopted controls. To do so, TrustCloud runs automated tests against systems in your product and business stack and verifies that they are properly configured.

This document outlines the steps you can take to grant TrustCloud access to only read metadata about the configuration settings for your Auth0 account so that TrustOps can validate and generate evidence for your compliance program.

Instructions to grant TrustCloud limited access to Auth0 metadata

  1. Log in to Auth0 with a user who is an admin of your Auth0 instance.
  2. In the left sidebar, click on ‘Applications’ and select the ‘Applications’ submenu.
    auth0 1
  3. Create an application by clicking on the “Create Application” button.
  4. Give your application a descriptive name Ex. TrustCloud TrustCloud.
    auth0 2
  5. Choose an application type: Select ‘Machine to Machine Applications’.
    auth0 3
  6. Click on the “Create” button.
    auth0 4
  7. Select an API: Select ‘Auth0 Management API’ from the selection options.
    auth0 5
  8. Permissions: Search for ‘read’ permissions in the Permissions search bar. Select: ‘read:tenant_settings’, ‘read:users’, ‘read:attack_protection’, ‘read:mfa_policies’ scopes. (NOTE: Following screenshot does not represent the specific permissions needed, but is included to show you the permissions selection window.)
    auth0 6
  9. Click on the “Authorize” button.
    auth0 7
  10. Copy the newly created application ‘Connection Data Domain’ and ‘client credentials’ and save it.
  11. On the created application page, click on the ‘Settings’ tab and copy the values of the input fields, and paste them in the connection setup in TrustOps:
    1. Domain
    2. Client ID
    3. Client Secret

Join the conversation

You might also be interested in

Duo

This document outlines the steps you can take to grant TrustCloud access to only...

Google Cloud Platform

This document outlines the steps you can take to grant TrustCloud access to only...

Bitbucket

Instructions to grant TrustCloud read-only access to your Bitbucket organization...

Hybrid Data Fabric

The Hybrid Data Fabric is a built-in connector between your TrustCloud and an external...

Okta

Set up Okta for automated tests with TrustCloud! This document outlines the steps you...

ServiceNow

Set up ServiceNow for Ticket as Evidence with TrustCloud! This document outlines the steps...

Tenable.io

This document outlines the steps you can take to grant TrustCloud access to only...

Jira Cloud

Set up Jira Cloud for Jira Ticket as Evidence with TrustCloud! This document outlines...
OR

TrustCommunity

Instant support with our AI chatbot

Please login with your TrustCloud credentials to continue