Security detections overview

Description

This Kibana Canvas Board aggregates the data of the Detection Engine that is part of Elastic Security. It comes we a set of pre build Kibana Lens visualizations that are aggregating the data. The user can decide to got with the Kibana Canvas board or use the visualizations to work with a normal Kibana Dashboard.

You will receive more than 10 visualizations + 2 index patterns next to the Canvas board.#

The Detection Engine of Elastic Security is detection suspicious behavior based on the MITRE ATTACK Framework. Its a very powerful tool to detect threats in the security related data that has been collected with the Elastic Stack. Nevertheless there is no out of the box view that shows the results of the alerts in an aggregated fashion. Thatswhy I build this Kibana dashboard to help users to understand the current situation.

Tested versions 7.11, 7.12, 7.13
ECS compliant Yes

Reviews

  • Great dashboard

    This dashboard really helps to aggregate the results of the detection engine. Now I always start looking at this dashboard and working myself through the open alerts.

    312 of 603 people found this review helpful.

    Help other customers find the most helpful reviews

    Did you find this review helpful? Yes No

  • Error on import

    Hi !

    I tried to import the dashboard in 7.10.2 and get an error regarding tag. As far as I know there is only in 7.11 tags. Is there a version for 7.10.2 available ?

    Thanks

    314 of 662 people found this review helpful.

    Help other customers find the most helpful reviews

    Did you find this review helpful? Yes No

  • You must log in to submit a review.

    Related downloads

    Threat detection Kibana dashboard

    Kibana dashboard example visualizing the results of the Elastic SIEM detection engine

    RUM extension dashboard

    This dashboard provide deeper insight into the real user monitoring data collected by Elastic RUM.

    Cloudflare Kibana dashboards

    Cloudflare dashboards and ingest pipelines to visualize cloudflare logs

    Coffee Canvas Example

    Kibana Canvas example infographic to show coffee consumption on a wallboard

    Kibana alerting enhancement

    This bundle enhances the Kibana alerting experience. Storing all relevant information in indices and visualize the data in dashboards.

    APM Services overview canvas

    Average rating:

    An adaptive turn key canvas example based on Elastic APM data.

    These downloads could be also interesting for you

    Vega Compound Gauge

    This is a compund gauge visualization made with Vega. Its very helpful for visualization of percentage values.

    OpenSIEM Logstash Parsing

    Logstash Parsing Configurations for Elastic SIEM parses many different sources into ECS

    ACSC Advisory IOCs detection rules

    ACSC Advisory IOCs detection rules for Elastic SIEM

    Logstash Meraki Pipeline

    Logstash Pipeline to load Meraki logs via Syslog into Elasticsearch

    osquery performance dashboard

    Kibana Dashboard example to visualize osquery performance

    Traffic light using Vega

    This traffic light visualizations is build with vega. The thresholds can be defined via values within the document itself.