Huntress logo
Huntress
Create
Roadmap
Feedback
Managed SIEM
184
Changelog

    Boards

  • Managed EDR

  • Integrations, Webhooks, APIs

  • Managed Security Awareness Training

  • Managed ITDR (MDR for Microsoft 365)

  • Reporting & Dashboards

  • Managed SIEM

  • User and Organization/Account Management

Powered by Canny

Managed SIEM

Category

Alert if Enabled Syslog Agent stops sending data for an extended period
If one of the Enabled Syslog Agents(ie: syslog listener) stops sending data for an extended period(ideally configurable), there should be an alert that is generated to have someone investigate.
5
·

complete

Monthly/Quarterly Reports
Would love to see SIEM reports similar to the EDR reports we currently get. Could either be added to the current EDR reports or separate.
3
·

complete

Reporting for Devices sending Syslog
I need to be able to create a list of devices that are sending event logs and a way to view how much traffic those devices are sending. I would really like to be able to create a list of what SHOULD be reporting and alert when something is not. Firewalls mostly.
4
·

complete

Powered by Canny