Views:

View information about the XDR detection risk factor, which is determined by Workbench alerts.

Operations Dashboard uses data from your organization's Workbench alerts to determine the risk levels of your users and devices. The XDR detection risk factor contributes to the Attack Index.
The following table outlines the widgets available in the XDR detection section.
Widget
Description
Priority Alerts
The Workbench alerts with the greatest impact on your Risk Index
  • The list only displays alerts that are not closed, have an alert score above 50, and were created within the last 30 days.
  • Click the Workbench ID to view and manage the alert in the Workbench app.
Important
Important
For customers that have updated to the Foundation Services release, Priority Alerts only shows data for devices within the asset visibility scope of the current user.
When viewing risk events, click the number in the case column to view current cases involving the specified risk event. Click the options icon (options=ddb0b67f-0654-4aa5-8bc7-48ec554c5448.png) to open a new case for the risk event or add the case to an existing risk event.
The following table describes the indicators associated with the XDR detection risk factor.
Indicator
Description
Data Sources
Target
Workbench alerts
Detection of malicious or risky events events by XDR sensors
  • Endpoint Sensor
  • Email Sensor
  • Network Sensor
  • Trend Vision One Container Security
  • Trend Cloud One - Endpoint & Workload Security
  • Trend Micro Deep Security
  • Device
  • User