As an internal IT team, it would great to have canned queries for specific frameworks like HIPAA, PCI, NIST 800-171 and so on. This would save the internal IT team hours of work building queries and focus monitoring the SIEM/