Skip to main content

Integrate Wirespeed with PagerDuty

  1. Login to Wirespeed and navigate to Integrations > Add Integration
  2. Select PagerDuty and click Integrate
  3. A new tab will open in which Wirespeed requests the PagerDuty write OAuth scope
  4. Click Accept to grant Wirespeed access as your PagerDuty user
  5. Navigate back to Wirespeed and refresh the integrations page
  6. Click on the newly added “PagerDuty” integration
  7. A configuration modal will open, prompting you to select:
    1. the PagerDuty Service that new incidents are created on
    2. an optional Case Incident Title Template
  8. Click Save

Required Permissions

Wirespeed uses PagerDuty classic OAuth and requests the write scope. This scope allows Wirespeed to read and write the PagerDuty resources needed for incident synchronization and webhook management. The connection is tied to the PagerDuty user who connects the integration. Wirespeed can only access services and perform actions that this user is permitted to access in PagerDuty. Connect the integration with a user whose PagerDuty role can manage incidents and webhook subscriptions for the selected service.

Webhook Setup

PagerDuty-to-Wirespeed sync (closing a case when its incident is resolved, marking a case as responded to, or adding notes) only happens when a webhook is configured. When you save the integration configuration, Wirespeed tries to create the PagerDuty webhook subscription automatically. The connecting PagerDuty user must have permission to manage webhook subscriptions for the selected service. The subscription is scoped to that service and subscribes to incident.resolved, incident.acknowledged, and incident.annotated.

Supported Sync Behavior

Wirespeed to PagerDuty:
  • Create an incident when a case is escalated
  • Resolve the incident when the case is closed
  • Add a note to the incident when a detection is added to the case
  • Add the close note to the incident when a case is closed with notes
PagerDuty to Wirespeed (requires a configured webhook):
  • Close the case when the incident is resolved
  • Mark the case as responded to and add a case note when the incident is acknowledged
  • Add a note to the case when the incident is annotated