Making Use of Building Block Rules in Elastic

Within the “Advanced Options” of the “About Rule” section of Elastic hides a useful feature that gets little attention. This feature makes the rule generate alerts that are ‘hidden’ from the alerts view. This can be powerful. Here are some ideas to get you started! JOIN FOR FREE Threshold Rules Create some rules that look […]
The post Making Use of Building Block Rules in Elastic appeared first on SOC Prime.