Skip to content

Manage alerts

The Alerts page is the primary interface for monitoring security detections. By default, it displays the last 10 alerts ordered by the most recent.

Alerts listing page with filters, sort options, and alert table

Sort alerts

You can sort the alert listing using the following options:

Sort option Description
Most Recent Orders alerts by creation date, newest first. Default view.
Most Frequent Orders alerts by occurrence count.
Recently Updated Orders alerts by the date of the last status change.
Most Urgent Orders alerts by urgency score, highest first.

Process alerts in bulk

  1. Select alerts using the checkboxes in the list.
  2. To select alerts across all pages, click Select all XX alerts. Select all alerts confirmation All alerts selected message
  3. Perform one of the following actions:
  4. Add to case - Select an existing case or create a new one. Bulk add to case toolbar
  5. Change status - Select a new status, enter a comment to explain the decision, then click Update status. Bulk status change interface with status dropdown and comment field

Note

For multi-tenant communities, alerts can only be added to cases that belong to the same community. Leaving a comment when changing status is recommended but not mandatory.