Security detections overview

Description

This Kibana Canvas Board aggregates the data of the Detection Engine that is part of Elastic Security. It comes we a set of pre build Kibana Lens visualizations that are aggregating the data. The user can decide to got with the Kibana Canvas board or use the visualizations to work with a normal Kibana Dashboard.

You will receive more than 10 visualizations + 2 index patterns next to the Canvas board.#

The Detection Engine of Elastic Security is detection suspicious behavior based on the MITRE ATTACK Framework. Its a very powerful tool to detect threats in the security related data that has been collected with the Elastic Stack. Nevertheless there is no out of the box view that shows the results of the alerts in an aggregated fashion. Thatswhy I build this Kibana dashboard to help users to understand the current situation.

Tested versions 7.11, 7.12, 7.13
ECS compliant Yes

Reviews

  • Great dashboard

    This dashboard really helps to aggregate the results of the detection engine. Now I always start looking at this dashboard and working myself through the open alerts.

    318 of 613 people found this review helpful.

    Help other customers find the most helpful reviews

    Did you find this review helpful? Yes No

  • Error on import

    Hi !

    I tried to import the dashboard in 7.10.2 and get an error regarding tag. As far as I know there is only in 7.11 tags. Is there a version for 7.10.2 available ?

    Thanks

    321 of 676 people found this review helpful.

    Help other customers find the most helpful reviews

    Did you find this review helpful? Yes No

  • You must log in to submit a review.

    Related downloads

    Timetable canvas

    This canvas examples shows timetable data from trains. Its build based on the real world information panel in german trian stations. Its refreshing based on current time.

    Kibana Canvas examples collection

    Average rating:

    A collection of canvas examples, like using conditionals, creating buttons, animations or context menues. Just copy paste into your Kibana Canvas project.

    Elastic Cloud Billing data collection and Kibana dashboard

    Pulls Elastic Cloud Billing information from the Billing API then sends it to an Elasticsearch cluster and visualizes the results in Kibana dashboards.

    RUM extension dashboard

    This dashboard provide deeper insight into the real user monitoring data collected by Elastic RUM.

    Office display canvas example

    Kibana canvas example showing an office screen with weather, news and stock information

    osquery performance dashboard

    Kibana Dashboard example to visualize osquery performance

    These downloads could be also interesting for you

    Kibana Enhanced Table plugin

    Data Table visualization with enhanced features like computed columns, pivot table or filter bar

    Elastic Cloud Monitoring dashboard

    Kibana dashboard that uses the Elastic Cloud monitoring data to provide better insights into what’s happening in your cloud environment.

    Kubernetes architecture overview

    Vega visualization to show the dependencies between the different Kubernetes components in a single visualization

    Sigma AWS Cloudtrail Detection rules

    A collection of rules based on the Sigma rules for AWS based on the Filebeat AWS module and Elastic agent integration.

    Watcher History Dashboard

    This dashboard shows the history of executed watcher jobs.

    Sigma Elastic SIEM rules for web server logs

    A collection of rules based on the Sigma detection rules for web server looks, e.g. apache, nginx or IIS.