Skip to main content

Responses are generated using AI and may contain mistakes.

Threat Detection ManagementThreat Detection Management Guide

Test Analytics Rules

Test analytics rules and ensure they work as expected.

To test analytics rules, adjust the analytics rule severity to None. When the analytics rule severity is None, the analytics rule is not used to calculate Threat Center case and alert risk scores when triggered.

  1. In the Analytics Rules tab, select the analytics rules for which you're adjusting the severity:

    • To select a single analytics rule, click the More menu The more options menu; three vertical dark grey dots on an off-white background., right-click the analytics rule, or select the checkbox for the analytics rule, then select Adjust Severity.

    • To select specific analytics rules, select the checkbox for each rule, then select Adjust Severity.

      Multiple analytics rules selected and the Adjust Severity action highlighted in a red rectangle.
    • To select all analytic rules in the list, click the checkbox in the header row, then select Adjust Severity.

      All analytics rules in the list selected and the Adjust Severity action highlighted in a red rectangle.
  2. Select None.

  3. Click Update.

  4. If the analytics rules are enabled, the change is added to a batch of pending changes, and you must apply the change to your environment.