Skip to main content

Use CasesGet Started with Threat Detection, Investigation, and Response (TDIR) Use Case Categories

Use Case Categories

A use case category is a collection of related use cases.

In the Threat Detection, Investigation, and Response (TDIR) Use Packages hierarchy, use case categories are a top-level classification that organizes and groups use cases into three general types:

For example, the Compromised Insiders use case category contains the Compromised Insiders, Lateral Movement, Privilege Escalation, Privileged Activity, Account Manipulation, and other use cases.