Alerts
With the advent of SIEMonster Version 5 and the unified dashboard, a new interface for the alert rules have been included. Built into the interface there is an event dashboard for live viewing of priority items that should be reviewed by the SOC/Security team utilizing the toolset contained in the platform.
The alerts dashboard can be accessed by clicking the menu item with the alarm bell and alerts description. If the sidebar is minimized it will only display the bell.
The following dashboard will load
NOTE: This is tenant specific. Please acquaint yourself with tenant switching.
The tabs at the top covers the rules, some example templates and the logs for the events.
This section deals with all aspects of alerting on the event stream.