Security detections overview

Description

This Kibana Canvas Board aggregates the data of the Detection Engine that is part of Elastic Security. It comes we a set of pre build Kibana Lens visualizations that are aggregating the data. The user can decide to got with the Kibana Canvas board or use the visualizations to work with a normal Kibana Dashboard.

You will receive more than 10 visualizations + 2 index patterns next to the Canvas board.#

The Detection Engine of Elastic Security is detection suspicious behavior based on the MITRE ATTACK Framework. Its a very powerful tool to detect threats in the security related data that has been collected with the Elastic Stack. Nevertheless there is no out of the box view that shows the results of the alerts in an aggregated fashion. Thatswhy I build this Kibana dashboard to help users to understand the current situation.

Tested versions 7.11, 7.12, 7.13
ECS compliant Yes

Reviews

  • Great dashboard

    This dashboard really helps to aggregate the results of the detection engine. Now I always start looking at this dashboard and working myself through the open alerts.

    381 of 751 people found this review helpful.

    Help other customers find the most helpful reviews

    Did you find this review helpful? Yes No

  • Error on import

    Hi !

    I tried to import the dashboard in 7.10.2 and get an error regarding tag. As far as I know there is only in 7.11 tags. Is there a version for 7.10.2 available ?

    Thanks

    Thank you for your feedback.

    403 of 830 people found this review helpful.

  • You must log in to submit a review.

    Related downloads

    Detection engine alerts overview dashboard

    Average rating:

    Kibana Canvas dashboard that shows an aggregated view on the results of the detection engine in Elastic Security.

    Ask Me Anything Booth – Canvas Example

    This is an example canvas page that shows how to visualize using canvas in general.

    Filebeat Suricata Canvas dashboard

    A Kibana Canvas dashboard example that visualizes suricata logs collected with Filebeat.

    APM Services overview canvas

    Average rating:

    An adaptive turn key canvas example based on Elastic APM data.

    Coffee Canvas Example

    Kibana Canvas example infographic to show coffee consumption on a wallboard

    Data flow canvas

    Average rating:

    This canvas examples shows some possibilities of how to visualize data flows. Every flow can be activated / deactivated based on your Elasticsearch data.

    These downloads could be also interesting for you

    Data flow canvas

    Average rating:

    This canvas examples shows some possibilities of how to visualize data flows. Every flow can be activated / deactivated based on your Elasticsearch data.

    Filebeat Log analysis canvas example

    This is a simple canvas dashboard example that analyzes logs created by Filebeat.

    Filebeat Suricata Canvas dashboard

    A Kibana Canvas dashboard example that visualizes suricata logs collected with Filebeat.

    Timetable canvas

    This canvas examples shows timetable data from trains. Its build based on the real world information panel in german trian stations. Its refreshing based on current time.

    Detection engine alerts overview dashboard

    Average rating:

    Kibana Canvas dashboard that shows an aggregated view on the results of the detection engine in Elastic Security.

    Coffee Canvas Example

    Kibana Canvas example infographic to show coffee consumption on a wallboard