Skip to main content

Use CasesGet Started with Threat Detection, Investigation, and Response (TDIR) Use Case Categories

Audit Tampering Use Case

Learn about the Audit Tampering use case and what Exabeam functionalities protect against it.

The Audit Tampering use case describes when someone tampers with audit logs to destroy an incriminating audit trail and remain undetected.

In the Threat Detection, Investigation, and Response (TDIR) Use Case Categories hierarchy, the Audit Tampering use case falls under the Malicious Insiders use case category. It contains the Audit Log Manipulation scenario.

In Case Manager, use the out-of-the-box Audit Tampering incident type to standardize incident fields, phases, and tasks for audit tampering incidents.