Skip to content

Case

  • Provides incident responders with a centralized view for managing and tracking the handling process of security incidents.
  • Users can assign and update security tickets, ensuring each incident receives timely and effective handling.

View

img.png

Supports multiple filtering and sorting functions.

Detail

img_1.png

Case operation panel, displaying basic Case information

Alerts

img_2.png

All alerts associated with the Case. Click an Alert record to view alert details.

Enrichment

img_3.png

All Enrichment records associated with the Case. Click an Enrichment record to view details.

Playbooks

img_4.png

List of Playbooks associated with the Case

Investigation

img_8.pngimg_9.pngimg_10.png

AI-analyzed investigation report

Log

View the change history of the Case for auditing and tracking purposes.

img_5.png

Comments

View and participate in Case-related discussions for team collaboration.

img_6.png

Playbook

img_7.png

For Playbook development, refer to the Playbook Development Guide

For Playbook usage, refer to Playbook