- Get Started with Threat Detection Management
- Analytics Rules
- Analytics Rule Classifications
- Create an Analytics Rule
- Manage Analytics Rules
- Tune Analytics Rules
- Find Analytics Rules
- Share Analytics Rules
- Troubleshoot Analytics Rules
- Analytics Rules Syntax
- Advanced Analytics Rule Syntax vs. Analytics Rule Syntax
- Logical Expressions in Analytics Rule Syntax
- String Operations Using Analytics Rule Syntax
- Integer Operations Using Analytics Rule Syntax
- Time Operations Using Analytics Rule Syntax
- Network Operations Using Analytics Rule Syntax
- Context Operations Using Analytics Rule Syntax
- Entity Operations Using Analytics Rule Syntax
- Correlation Rule Operations Using Analytics Rule Syntax
- Analytics Engine Status
- Correlation Rules
- Threat Scoring
PrevNext
Analytics Rule Groups
Get to know analytics rule groups, categories of analytics rules organized by statistical relationship.
Analytics rule groups classify analytics rules by statistical relationship; for example, all rules that detect the first application login from an endpoint are under the First source host for application login group.
Analytics rule groups are a lower-level classification under families. To view the complete list of analytics rule groups, create or edit an analytics rule using the builder, then navigate to the step where you assign the rule to a group.