Huntress logo
Huntress
Create
Roadmap
Feedback
Managed SIEM
184
Changelog

    Boards

  • Managed EDR

  • Integrations, Webhooks, APIs

  • Managed Security Awareness Training

  • Managed ITDR (MDR for Microsoft 365)

  • Reporting & Dashboards

  • Managed SIEM

  • User and Organization/Account Management

Powered by Canny

Managed SIEM

Category

Save Custom Queries
Would be good if there was a way to store a custom query we make for quick reference back to. E.G if we are monitoring the same event type for a particular user, instead of having to type of the ES|QL command each time, being able to load a stored custom query or a dropdown list of showing the history of previously ran queries to refer back on.
5
·

complete

Allow Exporting Search Data to CSV
Sometimes I want to be able to export data to a csv if there is a lot of data I have to look over. Allowing exporting all data of a query search would be helpful with this.
5
·

complete

SIEM Canned Queries
It would be nice if we can have an "easy button" for searching for specific common / interesting events. One example may be "failed logins" or "RDP Session Logins" with the option to modify the query to expand or scope it (Machine name etc).
9
·

complete

Powered by Canny