The SOC Detection Management Team Dashboard offers a centralized view for optimizing security operations. It tracks essential metrics, including the status of security detections, the number of enabled and total searches, and counts for notable events and risk rules. The dashboard provides an Alert Overview to manage new and in-test alerts, and focuses on Detection Refinement by evaluating notable event performance, indicating true positives, false positives, and investigation rates to guide tuning efforts. Additionally, it audits configurations by monitoring search and configuration modifications, and facilitates Risk Monitoring by highlighting top risk objects and their score changes to identify emerging threats. This comprehensive approach enables data-driven prioritization of detection improvements and enhances overall security posture.
-
Notifications
You must be signed in to change notification settings - Fork 1
jccmon/cyberthreatdetection
Folders and files
| Name | Name | Last commit message | Last commit date | |
|---|---|---|---|---|
Repository files navigation
About
No description, website, or topics provided.
Resources
Stars
Watchers
Forks
Releases
No releases published
Packages 0
No packages published