Detections
WidgetDescriptionType
Detection Types Displays a pie chart of detection types.

Hide Query

Show Query

Pie Chart
Detections Displays a table of event detections and associated data (timestamp, sensor ID, ComputerName, User,Severity, Local IP, etc.)

Hide Query

Show Query

Table
Techniques over Time Displays a chart of detected event techniques over a 1 hour timespan.

Hide Query

Show Query

Time Chart
Detection Events Displays a summary of detection events by computer name and customer IDS string.

Hide Query

Show Query

Gauge
Detections by Technique Displays a chart of detections by technique.

Hide Query

Show Query

Bar Chart
Detection by Tactic Displays a chart of event detections by tactic.

Hide Query

Show Query

Bar Chart
Tactic over Time Displays a chart of event tactics over a 1 hour timespan by computer name and customer IDS string.

Hide Query

Show Query

Time Chart
Tactics Displays a pie chart of top event tactics.

Hide Query

Show Query

Pie Chart
Events by eventtype Displays a chart of events by event type using metadata.

Hide Query

Show Query

Bar Chart
Events over time Displays a list of events over time

Hide Query

Show Query

Time Chart
Firewall Activity
WidgetDescriptionType
Firewall Events Displays a table of firewall events and associated data (host name, device ID, event type, event policy name, etc.)

Hide Query

Show Query

Table
Outbound Blocked Requests Displays a flowchart of outbound blocked requests using firewall data from local address to remote address.

Hide Query

Show Query

Sankey
Blocked Requests - Outbound Displays a list of outbound blocked requests.

Hide Query

Show Query

Gauge
Events by eventtype Displays a chart of events by event type using metadata.

Hide Query

Show Query

Bar Chart
Blocked Requests - Inbound Displays a list of blocked inbound access requests using metadata.

Hide Query

Show Query

Gauge
FIrewall Activity - Total events Displays a list of total firewall event activities.

Hide Query

Show Query

Gauge
Events over time Displays a list of events over time

Hide Query

Show Query

Time Chart
Inbound Blocked Requests Displays a flowchart of inbound blocked requests from remote address to local address.

Hide Query

Show Query

Sankey
Summary Dashboard
WidgetDescriptionType
Policy events Displays a list policy events and associated data.

Hide Query

Show Query

Gauge
Detections Displays a table of event detections and associated data (timestamp, sensor ID, ComputerName, User,Severity, Local IP, etc.)

Hide Query

Show Query

Table
Policty events by Users Displays aggregated, policy-related events by user using metadata.

Hide Query

Show Query

Pie Chart
Techniques over Time Displays a chart of detected event techniques over a 1 hour timespan.

Hide Query

Show Query

Time Chart
Detection Events Displays a summary of detection events by computer name and customer IDS string.

Hide Query

Show Query

Gauge
Firewall Events Displays a table of firewall events and associated data (host name, device ID, event type, event policy name, etc.)

Hide Query

Show Query

Table
Outbound Blocked Requests Displays a flowchart of outbound blocked requests using firewall data from local address to remote address.

Hide Query

Show Query

Sankey
Blocked Requests - Outbound Displays a list of outbound blocked requests.

Hide Query

Show Query

Gauge
Detections by Technique Displays a chart of detections by technique.

Hide Query

Show Query

Bar Chart
Detection by Tactic Displays a chart of event detections by tactic.

Hide Query

Show Query

Bar Chart
Tactic over Time Displays a chart of event tactics over a 1 hour timespan by computer name and customer IDS string.

Hide Query

Show Query

Time Chart
User Activity by ServiceName Displays a chart of user activity by username.

Hide Query

Show Query

Bar Chart
Policy events types Displays a pie chart of policy events by type using audit data.

Hide Query

Show Query

Pie Chart
Tactics Displays a pie chart of top event tactics.

Hide Query

Show Query

Pie Chart
Events by eventtype Displays a chart of events by event type using metadata.

Hide Query

Show Query

Bar Chart
User Activity Events Displays user activity events using customer IDS string.

Hide Query

Show Query

Gauge
User Activity Events Displays a table of user activity events and associated data (customer ID, user ID, service, operation).

Hide Query

Show Query

Table
Blocked Requests - Inbound Displays a list of blocked inbound access requests using metadata.

Hide Query

Show Query

Gauge
Identity Protection Events Displays a list of identity protection events.

Hide Query

Show Query

Gauge
Events over time Displays a list of events over time

Hide Query

Show Query

Time Chart
Inbound Blocked Requests Displays a flowchart of inbound blocked requests from remote address to local address.

Hide Query

Show Query

Sankey
User Activity
WidgetDescriptionType
Policy events Displays a list policy events and associated data.

Hide Query

Show Query

Gauge
Policty events by Users Displays aggregated, policy-related events by user using metadata.

Hide Query

Show Query

Pie Chart
User Activity by ServiceName Displays a chart of user activity by username.

Hide Query

Show Query

Bar Chart
Policy events types Displays a pie chart of policy events by type using audit data.

Hide Query

Show Query

Pie Chart
Events by eventtype Displays a chart of events by event type using metadata.

Hide Query

Show Query

Bar Chart
Activity by Operations Displays a pie chart of user activity by operation name.

Hide Query

Show Query

Pie Chart
User Activity Events Displays user activity events using customer IDS string.

Hide Query

Show Query

Gauge
User Activity Events Displays a table of user activity events and associated data (customer ID, user ID, service, operation).

Hide Query

Show Query

Table
Events over time Displays a list of events over time

Hide Query

Show Query

Time Chart