Skip to main content

I Want to create a dashboard for the alerts that are triggered in SIEM and need to know the case has been created in SOAR arent?
Dashboard to find when was the last alert created in SIEM, when was the last case created in SOAR, how many laerts got created and subsequent cases in SOAR

Hi @KesavR.   Have you tried starting with any of the existing dashboards as a way to get ideas for how to put something like this together?


For example, the SecOps platform has distinct dashboards for things like rule detections as well as SOAR case creation like shown below.  You can use these dashboards as-is or use them as inspiration for creating your own under Personal Dashboard


Example of a dashboard showing case generation and associated priority.



Here is another dashboard that is centered around rule detections specifically (SIEM).



 


 


Do you have access to Advanced Reports? @KesavR 


Reply