Does anyone have any advice on how you could create a dashboard to see the average amount of time between the initial log time and a detection firing based off of that log? If possible I would like to see the distributions of time based on log source as well.
Dashboard for time between logging and detections firing
Login to the community
Login with SSO
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.