Workbench

View and respond to alerts triggered by detection models and incidents which group related alerts together.

The Workbench app (XDR > Workbench) provides a list of alerts triggered by detection models, as well as incidents which group related alerts together. The Workbench app enables you to investigate and respond to each alert and incident.

The following table outlines the elements available in the Workbench app.

Section

Description

Alert View tab

Displays alerts that you can investigate through an in-depth root cause and impact analysis to understand the alert extent and severity and further determine actions to respond to the alerts

For more information, see Alert View.

Incident View tab

Displays incidents that group related alerts to help you quickly identify and mitigate potential system breaches in your network environment

For more information, see Incident View.

Automated Response Playbooks

Displays the Automated Response Playbooks available in the Security Playbooks app