Analytic Rules - Z

20 analytic rules starting with 'Z'.

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

All Analytic Rules


Jump to letter: # | A | B | C | D | E | F | G | H | I | J | K | L | M | N | O | P | Q | R | S | T | U | V | W | X | Z

Source: 📦 Solution | 📄 Standalone | 🔗 GitHub Only

Name Severity Source
Zero Networks Segement - Machine Removed from protection High 📦 ZeroNetworks
Zero Networks Segment - New API Token created Low 📦 ZeroNetworks
Zero Networks Segment - Rare JIT Rule Creation Medium 📦 ZeroNetworks
ZeroFox Alerts - High Severity Alerts High 📦 ZeroFox
ZeroFox Alerts - Informational Severity Alerts Informational 📦 ZeroFox
ZeroFox Alerts - Low Severity Alerts Low 📦 ZeroFox
ZeroFox Alerts - Medium Severity Alerts Medium 📦 ZeroFox
ZeroTrust(TIC3.0) Control Assessment Posture Change Medium 📦 ZeroTrust(TIC3.0)
Zinc Actor IOCs files - October 2022 High 📦 Zinc Open Source
Zoom E2E Encryption Disabled Medium 📄 Standalone Content
Zscaler - Connections by dormant user High 📦 Zscaler Private Access (ZPA)
Zscaler - Forbidden countries High 📦 Zscaler Private Access (ZPA)
Zscaler - Shared ZPA session High 📦 Zscaler Private Access (ZPA)
Zscaler - Unexpected event count of rejects by policy High 📦 Zscaler Private Access (ZPA)
Zscaler - Unexpected update operation Medium 📦 Zscaler Private Access (ZPA)
Zscaler - Unexpected ZPA session duration Medium 📦 Zscaler Private Access (ZPA)
Zscaler - ZPA connections by new user Medium 📦 Zscaler Private Access (ZPA)
Zscaler - ZPA connections from new country Medium 📦 Zscaler Private Access (ZPA)
Zscaler - ZPA connections from new IP Medium 📦 Zscaler Private Access (ZPA)
Zscaler - ZPA connections outside operational hours Medium 📦 Zscaler Private Access (ZPA)

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index · Back to Analytic Rules