Connect a Bitbucket instance to SSPM to detect posture
risks.
| Where Can I Use This? | What Do I Need? |
|
|
- SaaS Security Posture Management license
Or any of the following licenses that include the Data Security license:
|
For SSPM to detect posture risks in your Bitbucket instance, you must onboard your
Bitbucket instance to SSPM. Through the onboarding process, SSPM logs in to
Bitbucket using account credentials. SSPM uses this account to scan your Bitbucket
instance for misconfigured settings. If there are misconfigured settings, SSPM
suggests a remediation action based on best practices.
SSPM gets access to your Bitbucket instance by using Okta SSO or Microsoft Azure
credentials that you provide during the onboarding process. For this reason, your
organization must be using Okta or Microsoft Azure as an identity provider. The Okta
or Microsoft Azure account must be configured for multi-factor authentication (MFA)
using one-time passcodes.
To onboard your Bitbucket instance, you complete the following actions: