Endpoint ManagementIru

Iru

Configure the Iru Endpoint Management integration with RAD Security to ingest device inventory and compliance findings, and trigger device remediation.

This guide walks you through integrating Iru with RAD Security to ingest managed-device inventory and device compliance findings, and to trigger remediation on a device from RAD.

Iru is an endpoint management platform. RAD Security connects to the Iru API using an API token and pulls device inventory and compliance posture on a scheduled basis to correlate them with your runtime, cloud, and Kubernetes security data.

Read-only ingestion, with one write action: RAD only reads device inventory and compliance from Iru. The single exception is device remediation — RAD can trigger a remediation action on a device through Iru. That action is RBAC-gated (requires tenant write permission) and recorded as an OCSF Device Control Finding.

Prerequisites

Before you begin, ensure you have:

  • An Iru account with API access
  • Permission to create an API token in Iru
  • Your Iru API URL (the base URL of your Iru API)
  • Access to a RAD Security workspace with integration permissions

Understanding Integration Components


Step 1: Create an API Token in Iru

Sign in to the Iru Console

Log in to the Iru console with an account that has permission to manage API access.

Generate an API Token

Navigate to the API / access settings and create a new API token. Copy its value.

Copy the API Token immediately. It is typically shown only once at creation time. Store it securely in a password manager or secrets vault.

Note Your API URL

Record the API URL (base URL) for your Iru deployment.

Exact console navigation and labels may vary across Iru versions. Consult your Iru documentation or administrator for the current steps to create an API token and confirm your API URL.


Configure in RAD Security

Navigate to your RAD Security workspace and configure the Iru integration with the following parameters:

Required Parameters

ParameterRequiredDescription
API TokenYesIru API token used to authenticate API requests
API URLYesBase URL of your Iru API deployment

Verify Integration

Check Connection Status

  1. Navigate to Data Sources > Integrations > Endpoint Management in RAD Security
  2. Locate your Iru integration
  3. Verify the connection status shows as Connected

Your Iru integration is now configured! RAD Security will ingest device inventory and compliance findings from Iru on a scheduled basis.

What Data is Synced

Use Cases

Compliance Management Track device compliance gaps from discovery through remediation across your Iru fleet.

Asset Visibility Use managed-device inventory to understand your endpoint estate and reduce attack surface.

Threat Response Trigger Iru remediation on a non-compliant or compromised device directly from RAD.

RADBot Prioritization Leverage RADBot to prioritize Iru device findings by real-world impact.

Troubleshooting

Security Best Practices

Use a Service Account Create a dedicated API token for the RAD integration rather than tying it to a personal account.

Least Privilege Grant only the permissions required to read inventory and compliance, plus remediation if used.

Rotate Credentials Rotate the API token periodically according to your security policy.

Secure Secret Storage Store the API token in a secrets vault. Never commit it to version control.

Additional Resources

Next Steps