Attach CrowdStrike Spotlight vulnerability evidence to Drata controls
Build a scheduled workflow that gathers vulnerability-management evidence from CrowdStrike Spotlight (e.g., scan coverage and remediation status). Map it to the relevant Drata controls and upload it as evidence. Avoid duplicate uploads, handle API errors and empty data, and log what was attached. Output the list of Drata controls updated with evidence.
What this prompt builds
Collect Spotlight vulnerability-management evidence and attach it to the right Drata controls.
The problem
Compliance frameworks require proof that vulnerability management is operating, but gathering that evidence from CrowdStrike before each audit is manual and time-consuming. Controls drift to non-compliant between collections.
Solution and impact
This workflow pulls vulnerability-management evidence from CrowdStrike Spotlight and attaches it to the relevant Drata controls automatically. Compliance evidence stays current and audit prep stops being a fire drill.