Security detections overview

Description

This Kibana Canvas Board aggregates the data of the Detection Engine that is part of Elastic Security. It comes we a set of pre build Kibana Lens visualizations that are aggregating the data. The user can decide to got with the Kibana Canvas board or use the visualizations to work with a normal Kibana Dashboard.

You will receive more than 10 visualizations + 2 index patterns next to the Canvas board.#

The Detection Engine of Elastic Security is detection suspicious behavior based on the MITRE ATTACK Framework. Its a very powerful tool to detect threats in the security related data that has been collected with the Elastic Stack. Nevertheless there is no out of the box view that shows the results of the alerts in an aggregated fashion. Thatswhy I build this Kibana dashboard to help users to understand the current situation.

Tested versions 7.11, 7.12, 7.13
ECS compliant Yes

Reviews

  • Great dashboard

    This dashboard really helps to aggregate the results of the detection engine. Now I always start looking at this dashboard and working myself through the open alerts.

    Thank you for your feedback.

    312 of 603 people found this review helpful.

  • Error on import

    Hi !

    I tried to import the dashboard in 7.10.2 and get an error regarding tag. As far as I know there is only in 7.11 tags. Is there a version for 7.10.2 available ?

    Thanks

    314 of 662 people found this review helpful.

    Help other customers find the most helpful reviews

    Did you find this review helpful? Yes No

  • You must log in to submit a review.

    Related downloads

    Kibana Canvas examples collection

    Average rating:

    A collection of canvas examples, like using conditionals, creating buttons, animations or context menues. Just copy paste into your Kibana Canvas project.

    Crawler dashboard

    A Kibana dashboard that visualizes the result of the crawler from Elastic Enterprise Search

    PI Hole Logstash Pipeline and Dashboard

    A filter for Logstash parsing PI-Hole logs + Dashboard to visualize the data

    Filebeat Log analysis canvas example

    This is a simple canvas dashboard example that analyzes logs created by Filebeat.

    Ask Me Anything Booth – Canvas Example

    This is an example canvas page that shows how to visualize using canvas in general.

    Ingest Pipeline Monitoring

    This Kibana dashboard can be used monitor your ingest pipelines

    These downloads could be also interesting for you

    Vega Clock UTC

    This is a working clock visualization in UTC time.

    Elastic Cloud Monitoring dashboard

    Kibana dashboard that uses the Elastic Cloud monitoring data to provide better insights into what’s happening in your cloud environment.

    Sigma Zeek Detection rules

    A collection of rules based on the Sigma rules for Zeek based on the Filebeat Zeek module.

    Impossible travel transform job

    Impossible travel detection by calculating the distance between two login locations in combination with the time between the two logins

    Kibana Maps with Open Weather Map

    This is the default basemap of Kibana incl. the Open Weather Map tile for temperature, wind and pressure

    Filebeat Log analysis canvas example

    This is a simple canvas dashboard example that analyzes logs created by Filebeat.