Skip to main content

DashboardDashboards Guide

Table of Contents

Data Loss Prevention Activity Dashboard – User-Based

This dashboard provides an overview of Data Loss Prevention (DLP) activities of the users within your organization, including information on the DLP alerts and the users triggering them.

Note

This dashboard can assist you in complying with the following regulatory requirements: HIPAA 164.312(b), HIPAA 164.312(a)(1), NIST 800-53 AU-13(3), CJIS 5.1.3, CJIS 5.1.4, NIST 800-66 R1 4.4.3, HIPAA 164-306(a)(4), NIST 800-66 R1 4.6.3, CJIS 4.2.3.3, GDPR 5.1.f, HIPAA 164-306(a)(3).

Time Range Filter

The Event : Approx Log Time filter sets the time range for the event data. The default setting is in the last 7 days. You can update this filter with a wide range of customizable settings.

To update the time range filter, click the arrow (icon-expand.png) on the right, under the Edit button, to expand the filters panel. In the Event : Approx Log Time filter, select an operator from the first drop down menu and then enter or select values in the subsequent fields, depending on the operator you selected. To save your filter changes, click Apply on the right side of the filter panel. The updated filter is applied to the visualization.

time-range-options.png

User-Based DLP Alerts Count

This single value bar chart displays the total number of host-based DLP alerts within the selected time range.

Host-Based-DLP-Alerts-Count.png

Number of Users with DLP Alerts

This single value bar chart displays the number of unique users in your organization who have triggered DLP alerts.

Top 10 User-Based DLP Alerts

This pie chart illustrates the count proportions of the top 10 most common user-based DLP alert types. To view the represented values, hover your pointer over the graph slices. To view the underlying events of a value, click the graph slice, and then click Show Results in Search.

Top 5 User-Based DLP Alert Categories

This pie chart illustrates the count proportions of the top 5 most common user-based DLP alert categories. To view the represented values, hover your pointer over the graph slices. To view the underlying events of a value, click the graph slice, and then click Show Results in Search.

Top 10 Users with DLP Alerts

This pie chart illustrates the count proportions of the top 10 users who have triggered the most DLP alerts. To view the represented values, hover your pointer over the graph slices. To view the underlying events of a value, click the graph slice, and then click Show Results in Search.

Top 5 Protocols in User-Based DLP Alerts

This pie chart illustrates the count proportions of the top 5 protocols in user-based DLP alerts. To view the represented values, hover your pointer over the graph slices. To view the underlying events of a value, click the graph slice, and then click Show Results in Search.

User-Based DLP Activity Trends

This line graph shows the count trends of the different user-based DLP activities. To view the values represented in the chart, hover your pointer over the graph lines to display the data points. To view the underlying events of a value, click the data point, and then click Show Results in Search.

Host-Based-DLP-Activity-Trends.png

Recent User-Based DLP Activity Events

This table provides details on the last 20 user-based DLP activity events. Click the heading of the column that you want to sort the data by. Click the arrow icon to change between ascending Sort-Up.png and descending Sort-Down.png orders. To view all the table rows, you may need to use the scroll bar on the right.

Recent-User-Based-DLP-Activity-Events.png