Integrate Proofpoint Targeted Attack Protection (TAP) with Red Canary
    • 25 Aug 2025
    • 1 Minute to read
    • PDF

    Integrate Proofpoint Targeted Attack Protection (TAP) with Red Canary

    • PDF

    Article summary

    Proofpoint Targeted Attack Protection (TAP) is a powerful tool designed to shield your organization from advanced email-borne threats.

    After integration, Proofpoint TAP alerts are stored within Red Canary, but are not considered strong investigative leads for threat detection.

    For more information on how to generate your TAP Service Credentials, see Generate TAP Service Credentials.

    Red Canary–Enter your TAP Service Credentials

    Enter your Proofpoint TAP Service Credentials to start receiving TAP alerts in Red Canary.

    1. From your Red Canary homepage, click Integrations. If you do not see the required integration, click See all integrations.

    2. In the search bar, type and select Proofpoint Targeted Attack Protection.

    3. Click Configure.

    4. Enter a Name.  

    5. Under the Ingest Format/Method dropdown, select Proofpoint Tap via API Poll.

    6. Enter your Proofpoint Tap Service Principal.

    7. Enter your Proofpoint TAP Service Secret.

    8. Click Save Configuration.

    9. Click Edit Configuration.

    10. Click Activate.


    Was this article helpful?

    Changing your password will log you out immediately. Use the new password to log back in.
    First name must have atleast 2 characters. Numbers and special characters are not allowed.
    Last name must have atleast 1 characters. Numbers and special characters are not allowed.
    Enter a valid email
    Enter a valid password
    Your profile has been successfully updated.