Views:

Check the security risks and anomalies identified by correlating signals across different sources. Understand the reasons behind the detections.

Cloud Email and Collaboration Protection provides you visibility of the security risks and anomalies detected by Correlated Intelligence as well as the detection signals correlated together.
The following table details the actions available on the Correlated Intelligence screen.
Action
Description
Search for security risks / anomalies
  • Click the Security Risks tab or Anomalies tab.
  • Select an organization if you have multiple and specify the other search criteria.
    A list of security risks / anomalies matching the search criteria appears on the screen, including the threat type, security risk name / anomaly name, detection signals, and status.
    For more information about the threat types, security risks / anomalies, and detection signals in Correlated Intelligence, see Threat Types, Security Risks, Anomalies, and Detection Signals.
View detection details
Click on the detection signals to view details about the detection.
The detection details screen allows you to preview the email content and learn about the detection signals.
Note
Note
Only quarantined emails can be previewed. Click Enable Email Preview if you cannot preview quarantined emails. For details, see Previewing Quarantined Emails.
Additional actions
Refresh (refresh_001.png): Refreshes the screen to show the latest detections in the list
Show/hide columns (columndisplayicon_001.jpg): Customizes the columns that display in the list
Export (export_001.png): Exports the detections in the list