Skip to main content

Use CasesGet Started with Threat Detection, Investigation, and Response (TDIR) Use Case Categories

Privilege Abuse Use Case

Learn about the Privilege Abuse use case and what Exabeam functionalities protect against it.

The Privilege Abuse use case describes when a privileged account does something unusual, or a non-privileged user does something that typically requires privileged access.

In the Threat Detection, Investigation, and Response (TDIR) Use Case Categories hierarchy, the Privilege Abuse use case falls under the Malicious Insiders use case category. It contains specific scenarios, including:

In Case Manager, use the out-of-the-box Privilege Abuse incident type to standardize incident fields, phases, and tasks for privilege abuse incidents.

View more information about privilege abuse and tips for configuring the use case on the Exabeam Community.