Skip to main content

Threat Detection ManagementThreat Detection Management Guide

Threat Detection Management – First Look

tdm-first-look.png

1

Analytics rules tab – Visibility of the analytics engine and management for analytics rules.

2

Correlation rules – Visibility and management of correlation rules.

3

Operational status of the analytics engine.

4

Available Rules – Displays the total number of analytics rules available in the system and their current state (e.g., how many rules are enabled or disabled).

5

Updates – Highlights updates to the analytics rules, showing the count of recently enabled and disabled rules released by the system provider.

6

Exclusions – Provides the ability to create and manage exclusion rules to prevent certain rules from triggering under specified conditions (e.g., specific field values or context).

7

Analytics Rules Count – Indicates the total number of analytics rules currently loaded and visible in the table.

8

Search Bar – A search function to quickly find specific analytics rules by name, use case, or other criteria.

9

Analytics Rules Table – A detailed table listing the analytics rules and their enablement status.