Enrichment connectors enhance existing alert or incident information by pulling additional context from external systems. This enriched data helps security teams better understand the scope, severity, and impact of an alert or incident, enabling faster and more informed decision-making during investigation and triage.
- Getting Started
- Dashboard
- Features by License
- Incidents [1]
- Alerts [6]
- Threat Hunting [6]
- Rule Builder [5]
- Playbooks [19]
- Live Query [1]
- Policy
- Scope
- Activity Logs
- Connectors [18]
- Reports [6]
- Settings [3]
- Third-Party Open Source Tools
- Endpoint View
- Events [1]
- EDR/XDR Firewall Configuration Guide
- User View
- Release Notes [6]