View and respond to alerts triggered by detection models and incidents which group related alerts together.
The Workbench app (XDR > Workbench) provides a list of alerts triggered by detection models, as well as incidents which group related alerts together. The Workbench app enables you to investigate and respond to each alert and incident.
The following table outlines the elements available in the Workbench app.
Section |
Description |
---|---|
Alert View tab |
Displays alerts that you can investigate through an in-depth root cause and impact analysis to understand the alert extent and severity and further determine actions to respond to the alerts For more information, see Alert View. |
Incident View tab |
Displays incidents that group related alerts to help you quickly identify and mitigate potential system breaches in your network environment For more information, see Incident View. |
Automated Response Playbooks |
Displays the Automated Response Playbooks available in the Security Playbooks app |