Threat Detection Management – First Look
1 | Analytics rules tab – Visibility of the analytics engine and management for analytics rules. |
2 | Correlation rules – Visibility and management of correlation rules. |
3 | Operational status of the analytics engine. |
4 | Available Rules – Displays the total number of analytics rules available in the system and their current state (e.g., how many rules are enabled or disabled). |
5 | Updates – Highlights updates to the analytics rules, showing the count of recently enabled and disabled rules released by the system provider. |
6 | Exclusions – Provides the ability to create and manage exclusion rules to prevent certain rules from triggering under specified conditions (e.g., specific field values or context). |
7 | Analytics Rules Count – Indicates the total number of analytics rules currently loaded and visible in the table. |
8 | Search Bar – A search function to quickly find specific analytics rules by name, use case, or other criteria. |
9 | Analytics Rules Table – A detailed table listing the analytics rules and their enablement status. |