Managing Elastic Siem

Use when working with Elastic Siem — elastic Security SIEM detection management, alert triage, rule configuration, and threat hunting. Covers security alerts, detection rules, timeline investigations, endpoint events, and case management. Use when investigating security alerts, reviewing detection rule health, analyzing threat patterns, or managing Elastic Security configurations.

cloudthinker-ai Updated 7 repo stars

File contents

cloudthinker-ai/CloudSkills/tree/main/skills/connections/managing-elastic-siem commit 9eb7aa1523

Frequently asked questions

npx skillmds@latest add cloudthinker-ai/managing-elastic-siem