Skip to main content

Insights

Insights is the operational intelligence hub of DTACT, bringing together visualization, alerting, and case management capabilities to monitor, investigate, and respond to security events.

Core Applications

ApplicationPurposeKey Actions
DashboardsVisual displays combining multiple panesCreate, customize, export to PDF
PanesIndividual visualizations from queriesBuild charts, tables, gauges
DetectionsAutomated monitoring rulesMonitor data, generate alerts
AlertsEvents flagged by detectionsTriage, investigate, escalate
CasesStructured investigationsCollect evidence, collaborate, resolve

Workflow

Data Sources → Detections → Alerts → Cases → Resolution

AI Triage

How It Works

  1. Detections continuously monitor your data for specific conditions
  2. Alerts are automatically created when detection criteria are met
  3. AI Triage analyzes alerts and provides investigation guidance (optional)
  4. Cases organize related alerts and evidence for investigation
  5. Resolution documents findings and closes the investigation loop
Navigation
  • Dashboards — Build visual displays for monitoring and reporting
  • Panes — Create individual visualizations
  • Detections — Set up automated monitoring
  • Alerts — Manage security events
  • Cases — Conduct investigations