Security detections overview

Description

This Kibana Canvas Board aggregates the data of the Detection Engine that is part of Elastic Security. It comes we a set of pre build Kibana Lens visualizations that are aggregating the data. The user can decide to got with the Kibana Canvas board or use the visualizations to work with a normal Kibana Dashboard.

You will receive more than 10 visualizations + 2 index patterns next to the Canvas board.#

The Detection Engine of Elastic Security is detection suspicious behavior based on the MITRE ATTACK Framework. Its a very powerful tool to detect threats in the security related data that has been collected with the Elastic Stack. Nevertheless there is no out of the box view that shows the results of the alerts in an aggregated fashion. Thatswhy I build this Kibana dashboard to help users to understand the current situation.

Tested versions 7.11, 7.12, 7.13
ECS compliant Yes

Reviews

  • Great dashboard

    This dashboard really helps to aggregate the results of the detection engine. Now I always start looking at this dashboard and working myself through the open alerts.

    311 of 601 people found this review helpful.

    Help other customers find the most helpful reviews

    Did you find this review helpful? Yes No

  • Error on import

    Hi !

    I tried to import the dashboard in 7.10.2 and get an error regarding tag. As far as I know there is only in 7.11 tags. Is there a version for 7.10.2 available ?

    Thanks

    Thank you for your feedback.

    313 of 661 people found this review helpful.

  • You must log in to submit a review.

    Related downloads

    Kibana alerting enhancement

    This bundle enhances the Kibana alerting experience. Storing all relevant information in indices and visualize the data in dashboards.

    Data flow canvas

    Average rating:

    This canvas examples shows some possibilities of how to visualize data flows. Every flow can be activated / deactivated based on your Elasticsearch data.

    osquery performance dashboard

    Kibana Dashboard example to visualize osquery performance

    Watcher History Dashboard

    This dashboard shows the history of executed watcher jobs.

    Elasticsearch Performance Troubleshooting Kit

    Download the Elasticsearch Performance Troubleshooting Kit to efficiently diagnose and resolve slow query issues in your Elasticsearch environment.

    Kibana Canvas examples collection

    Average rating:

    A collection of canvas examples, like using conditionals, creating buttons, animations or context menues. Just copy paste into your Kibana Canvas project.

    These downloads could be also interesting for you

    AWS VPCFlow Kibana dashboard

    Kibana dashboard for AWS VPCFlow log events

    Terraform Elasticsearch environments

    Terraform example scripts to deploy Elastic Cloud Clusters + all necessary components in AWS and GCP

    Sigma Windows inbuilt detection rules

    A collection of rules based on the Sigma rules for Windows (inbuilt folder) based on Winlogbeat data .

    Vega advanced heat map

    Vega example to show GitHub commits per author per hour of day.

    Crawler dashboard

    A Kibana dashboard that visualizes the result of the crawler from Elastic Enterprise Search

    Elasticsearch Performance Troubleshooting Kit

    Download the Elasticsearch Performance Troubleshooting Kit to efficiently diagnose and resolve slow query issues in your Elasticsearch environment.