[RAC] Alerts as Data Meta #95736
Labels
Team:Detections and Resp
Security Detection Response Team
Team:Observability
Team label for Observability Team (for things that are handled across all of observability)
Team:ResponseOps
Label for the ResponseOps team (formerly the Cases and Alerting teams)
Team: SecuritySolution
Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc.
Team:Threat Hunting
Security Solution Threat Hunting Team
Theme: rac
label obsolete
This meta issue is for tracking the remaining efforts in implementing Alerts as Data throughout the stack, with initial integrations into the Observability and Security Solutions.
Main Milestones
Proof of Concepts
alerting
framework leveraging event-log for bootstrapping and bulk insert. Additionally wires up existing APM Rules for writing alerts as data,Access Control
The text was updated successfully, but these errors were encountered: