Frequently Asked Questions
How do I sign up to ARGOS?
What requirements are there for a user to log in?
The following identities are supported by ARGOS:
Azure Active Directory
Azure Key Vaults - Ensure that the expiration date is set on all keys
Azure Key Vaults - Ensure that the expiration date is set on all secrets
Our Azure Storage Accounts are all configured with Firewall settings. Can we still use ARGOS to monitor them?
Yes, you can. This requires some configuration on the Storage Accounts to whitelist the ARGOS service IP on the Storage Accounts. Follow the documentation here and contact our support team to learn about our internet IP.
Onboarding Cloud Environments
Add Azure to ARGOS
ARGOS requires an Azure AD application to authenticate to a customer's Azure cloud. You can create one in a few simple steps:
Add AWS to ARGOS
ARGOS requires an AWS IAM user to authenticate against an organisation's AWS account.
I can't see any AWS detections
ARGOS uses the AWS Config service to scan your environment in real time.
Add GCP to ARGOS
ARGOS requires a GCP Service Account to authenticate against an organisation's GCP projects.
What do I have to deploy to use ARGOS?
How much does it cost me to run ARGOS?
ARGOS uses "AWS Config" advanced queries for real time inventory and a few security scans. "AWS Config" is a service many organisations will likely already have enabled, nevertheless ARGOS's use of this service will likely incur a minimal additional charge on the customer's invoice.
Where does ARGOS store its data?
The metadata about rule detections is stored in a secured database located in Australia.
Is our data secure?
ARGOS encrypts sensitive data like the Azure, AWS or GCP credentials with AES-256 GCM in our database.
What data does ARGOS store?
ARGOS does not store any actual data about your environment apart from metadata like cloud resource IDs or resource configuration.
What happens to our data after we cancel our subscription?
Customer data is automatically marked for deletion 30 days after the end of the subscription.
Working with ARGOS
Can we ignore resources?
Yes, ARGOS automatically ignores cloud resources with the following tag:
Can we ignore a detection?
Yes, specific detections can be ignored by an ARGOS user if they are expected on a resource.
ARGOS can send notifications of new detections into a customer-owned Slack channel.
Microsoft Teams Integration
Atlassian Jira Integration
ARGOS can easily create Jira tickets in order to assign detections to the right members of your team.
browse to https://app.argos-security.io/account and select Jira Integration
Add your JIRA user account's email address
Create a JIRA API token at https://id.atlassian.com/manage-profile/security/api-tokens.
Provide the URI to your JIRA workspace in the format "https://your workspace.atlassian.net/"
Select the default project to connect ARGOS to
Select the issue type you want ARGOS to create when exporting