Set up Malware Bytes for automated tests with TrustCloud


Once you set up your compliance program, TrustCloud TrustOps works to ensure that your systems remain compliant with your adopted controls. To do so, TrustCloud runs automated tests against systems in your product and business stack, and verifies that they are properly configured.
This document outlines the steps you can take to grant TrustCloud access to only read metadata about the configuration settings for your MalwareBytes account, so that TrustOps can validate and generate evidence for your compliance program.

Instructions to grant TrustCloud limited access to MalwareBytes

  1. Log in to your organization’s MalwareBytes Nebula account with Super Admin role to create OAuth2 credentials and get your account ID.
  2. In the left navigation pane, click Integrate.
  3. In the upper right corner, click the Add button.
  4. In the Create Client pop-up window, enter an Application name.
  5. Check read scope and click Save.
  6. In the OAuth Client window, copy your client ID and client secret.
    Note: This is the only time your client secret is displayed, store it in a secure place. If you lose the secret, you need to generate a new secret, and you will be required to update all integrations that used the old secret.
    Click OK.
  7. Get your Account ID
    If you are logged into your organization’s MalwareBytes Nebula account, the account ID is in the browser address bar URL,[ACCOUNT ID]/dashboard. Copy the Account ID for reference.

For additional details, you can refer to the MalwareBytes documentation to generate the OAuth Keys.

