Skip to main content

Integrations

ConcertoGRC integrates with cloud providers, identity providers, device management tools, communication platforms, and task managers to automate evidence collection, sync personnel directories, import security findings, and monitor device compliance.

Integrations are managed at two levels:

  • Platform level -- the Concerto team curates the integration catalog, pre-maps data outputs to evidence requests and modules, and publishes integrations for tenant use
  • Tenant level -- administrators browse published integrations, configure connections, and optionally customize inherited mappings

Available Integrations

IntegrationCategoryWhat It Provides
Amazon Web ServicesCloud InfrastructureGuardDuty findings, IAM misconfigurations, infrastructure inventory, evidence reports
Microsoft 365 / EntraIdentity & AccessUser/group sync, MFA detection, enterprise app inventory, access grants
Google WorkspaceIdentity & AccessUser/group sync, MFA detection, admin user identification
SlackCommunicationDM notifications, channel alerts, incident submission via /incident command
Microsoft IntuneEndpoint ManagementCross-platform device inventory and compliance monitoring
Jamf ProEndpoint ManagementEnterprise Apple device management and compliance
SimpleMDMEndpoint ManagementLightweight Apple device management
MotionTask ManagementAI-powered task scheduling with bidirectional sync

Data Flow

Integrations push data into specific platform modules:

AWS GuardDuty / IAM → Vulnerability Management (findings)
AWS IAM Reports → Evidence Library (MFA, access lists)
AWS Infrastructure → Infrastructure (inventory, diagrams)
Microsoft 365 / Google → Personnel Directory (users, groups)
Identity Providers → Evidence Library (5 compliance reports)
MDM Providers → Endpoint Management (device inventory)
Slack → Notifications, Incident Response
Motion → Task Management (bidirectional sync)

Sync Schedules

CategoryIntervalDetails
Identity ProvidersEvery 24 hoursUser/group sync, MFA detection, evidence report generation
AWSEvery 6 hoursGuardDuty findings, IAM reports, infrastructure inventory
Endpoint ManagementEvery 6 hoursDevice inventory, compliance status, encryption/firewall checks

Sync runs automatically on schedule. The platform deduplicates data on each sync cycle -- existing records are updated rather than duplicated.

Setup & Configuration

For connection setup and status management, see Administration → Integrations. For detailed guides on each integration, see the pages below: