It would be awesome if Kibana could automatically assign an alert to a user once they acknowledge or close it. This would streamline our process and save a lot of time. Currently too many click are needed. Select the alerts (multiple times if more then 100...., see https://github.com/elastic/kibana/issues/183889), Assign the alert, Acknowledge the alerts, ...
This feature could really save our SOC analists a lot of time.
@yctercero
@Kseniiaign
"Team:Detection Engine"
"Team:Detections and Resp"
See https://discuss.elastic.co/t/alert-triage-enhancement-ideas
It would be awesome if Kibana could automatically assign an alert to a user once they acknowledge or close it. This would streamline our process and save a lot of time. Currently too many click are needed. Select the alerts (multiple times if more then 100...., see https://github.com/elastic/kibana/issues/183889), Assign the alert, Acknowledge the alerts, ...
This feature could really save our SOC analists a lot of time.
@yctercero @Kseniiaign
"Team:Detection Engine" "Team:Detections and Resp"