Skip to main content

Responses are generated using AI and may contain mistakes.

DashboardDashboards Guide

Agentic AI Security

This dashboard provides an overview of AI agent trends and behaviors in your environment. It visualizes data about the number and types of AI agent operations occurring in your environment, within the filtered time range. The individual visualizations filter the data from different perspectives to monitor agent-related risks. The dashboard as a whole can make information about your security posture available for reporting to executives, auditors, and other stakeholders.

If you want to put together a custom dashboard, several of the visualizations are also available as stand-alone visualizations that you can use in your own new dashboard. Alternately, you can copy this dashboard and customize it to filter for AI agent behavior from other perspectives.

Time Range Filter

The Event : Approx Log Time filter sets the time range for the event data. The default setting is in the last 7 days. You can update this filter with a wide range of customizable settings.

To update the time range filter, click the arrow (icon-expand.png) on the right, under the Edit button, to expand the filters panel. In the Event : Approx Log Time filter, select an operator from the first drop down menu and then enter or select values in the subsequent fields, depending on the operator you selected. To save your filter changes, click Apply on the right side of the filter panel. The updated filter is applied to the visualization.

time-range-options.png

Agentic AI - Result

This pie chart shows the total number of AI prompt events in your environment, during the filtered time range, and illustrates what proportions of those prompts were allowed or blocked. To view the represented values, hover your cursor over the graph slices. To drill down into a value and view the underlying events, click a graph slice and select the Show Results in Search option. The Search application opens and a query is populated in the search bar for you to run.

Tip

This visualization is also available as a stand-alone, pre-built visualization for use in other dashboards. You can view it on the Visualizations tab and when creating or editing a custom dashboard, you can select it from the Visualizations library.

agentic-ai-results.png

Agentic AI Usage by Host

This bar chart breaks down the count of AI prompt events in your environment, during the filtered time range, by both the source host and whether the prompts were allowed or blocked. To view the represented values, hover your cursor over the bars in the chart. To drill down into a value and view the underlying events, click a bar and select the Show Results in Search option. The Search application opens and a query is populated in the search bar for you to run.

Tip

This visualization is also available as a stand-alone, pre-built visualization for use in other dashboards. You can view it on the Visualizations tab and when creating or editing a custom dashboard, you can select it from the Visualizations library.

agentic-ai-usage-by-host.png

Agentic AI - Violations by User

This bar chart displays the count of AI violations (represented by blocked prompt events) in your environment, during the filtered time range. Each bar in the chart represents a user and is color coded to show the different reasons for which that user's AI prompts were blocked. To view the represented values, hover your cursor over the bars in the chart. To drill down into a value and view the underlying events, click a bar and select the Show Results in Search option. The Search application opens and a query is populated in the search bar for you to run.

agentic-ai-violations-by-user.png

Agentic AI Users - Blocked/Allowed

This bar chart breaks down the count of AI prompt events in your environment, during the filtered time range, by both the user email addresses and whether the prompts were allowed or blocked. To view the represented values, hover your cursor over the bars in the chart. To drill down into a value and view the underlying events, click a bar and select the Show Results in Search option. The Search application opens and a query is populated in the search bar for you to run.

Tip

This visualization is also available as a stand-alone, pre-built visualization for use in other dashboards. You can view it on the Visualizations tab and when creating or editing a custom dashboard, you can select it from the Visualizations library.

agentic-ai-blocked-allowed.png

Agentic AI by App ID

This bar chart breaks down the count of AI prompt events in your environment, during the filtered time range, by both the application ID and whether the prompts were allowed or blocked. To view the represented values, hover your cursor over the bars in the chart. To drill down into a value and view the underlying events, click a bar and select the Show Results in Search option. The Search application opens and a query is populated in the search bar for you to run.

Tip

This visualization is also available as a stand-alone, pre-built visualization for use in other dashboards. You can view it on the Visualizations tab and when creating or editing a custom dashboard, you can select it from the Visualizations library.

agentic-ai-by-app-id.png

Agentic AI - Violations

This table lists the count of AI violations in your environment, during the filtered time range. The data is filtered by the AI prompt violation reasons, whether the AI prompts were blocked or allowed, and the users responsible for the prompts. To sort the table by a specific column, click the column heading and toggle the arrow to sort in ascending (icon-arrow-ascend.png) or descending (icon-arrow-descend.png) order. To drill down into a value in the Count column and view the underlying events, click a count value and select the Show Results in Search option. The Search application opens and a query is populated in the search bar for you to run.

Tip

This visualization is also available as a stand-alone, pre-built visualization for use in other dashboards. You can view it on the Visualizations tab and when creating or editing a custom dashboard, you can select it from the Visualizations library.

agentic-ai-violations.png