Overview
The PagerDuty integration polls the PagerDuty Audit Records API and the Incidents API to ingest:
- Incident creation, acknowledgement, escalation, and resolution
- Service, escalation policy, and integration changes
- User, team, and on-call schedule modifications
- API key and OAuth grant activity
Prerequisites
- A PagerDuty account on a plan that includes the audit records API (Business or higher).
- An account-level Admin or Account Owner role to create global API keys.
Step 1: Create an API key in PagerDuty
- Sign in to PagerDuty as an Admin.
- Go to Integrations → API Access Keys.
- Click Create New API Key.
- Name it
atatus-siemand select Read-only API Key. - Click Create Key and copy the value immediately.
Step 2: Connect PagerDuty in Atatus
- In Atatus, go to Security → Cloud SIEM → Integrations.
- Locate the PagerDuty card and click Connect.
- Fill in the form:
| Field | Description | Example |
|---|---|---|
| API Key | The read-only key from Step 1. | u+xxxxxxxxxxxxxxxxxxxx |
| Poll Interval (minutes) | How often to fetch new events. | 5 |
| Enabled | Turn collection on. | true |
- Click Connect.
Verification
- The PagerDuty card shows Configured.
- Audit and incident events appear in Security → Cloud SIEM → Audit Logs → Events with source
pagerduty.
+1-415-800-4104