Skip to main content
Solved

Alerts/Case Management Dashboard

  • January 8, 2024
  • 1 reply
  • 28 views

Shaik__Shaheer
Forum|alt.badge.img+1

Hi,

I am attempting to design a personalized dashboard to monitor both new and resolved alerts associated with a specific analyst or user within the Chronicle instance. Unfortunately, I haven't identified a suitable keyword for use in the UDM Fields to construct the dashboard panel. If anyone has successfully developed a similar dashboard, I kindly request you to share the pertinent documentation or the dashboard YAML file.

With Regards,
Shaik Shaheer

Best answer by AymanC

The data you requested do not appear to be stored in SIEM Chronicle, and is a functionality within the SOAR instead.

1 reply

AymanC
Forum|alt.badge.img+13
  • Bronze 5
  • Answer
  • January 8, 2024

The data you requested do not appear to be stored in SIEM Chronicle, and is a functionality within the SOAR instead.