Document toolboxDocument toolbox

Mitre/SecOps lookup: SecOpsAlertDescription

Purpose

The SecOps Alert description Lookup contains all the alerts and their definitions considered by the Security Operations and the Devo 360 AWS or Devo 360 for Palo Alto applications. These applications use the alertPriority defined in this Lookup.

Devo 360 Applications

You must install this Lookup if you want to work with Devo 360 for AWS, Devo 360 for Palo Alto applications or install any Mitre alerts pack.

Open lookup

Once you have installed the lookup, you can use the Open button at the top right of the card in Exchange to access the Lookup Management area, where you can apply filters to find it and later manage it as required. You can also access the Lookup Management area via the Navigation pane (Data Search area → Lookup Management tab).

Use lookup

After installing the lookup, you can use it in the related applications mentioned above for their specific purposes. Apart from that, you can use it anywhere in the platform to enrich values when applicable. To do this, you must use the adequate syntax in queries to correlate values, as explained in this article.