Skip to main content
Advanced Search
Search Terms
Content Type

Exact Matches
Tag Searches
Date Options
Updated after
Updated before
Created after
Created before

Search Results

204 total results found

Daily Update: October 8

Updates for 2024 October 2024

Here are the main updates of the CISO Workplace: Overall Updates: Workplace Menu Update Favorites Support in Menu CIM Updates: Kanban Board Improvements Foldable column support Case Page Improvements Image Preview in Case Comments

Daily Update: October 9

Updates for 2024 October 2024

Here are the main updates of the CISO Workplace: Bug Fixes Updates: 1) Fixed Access Control Restrictions in the Toolset, and Profile menu 2) Fixes in the Favorites Menu 3) Fixes in Kanban Board Menu Updates: Improve Performance and Loading in Users M...

Daily Update: October 15

Updates for 2024 October 2024

Here are the main updates of the CISO Workplace: Security Aessessment Questionnaires Updates: Added support for Scoring to Text Field Type Questions CSPM Updates: Added support for Exporting the Findings Improvements in the Findings Table:1) Search 2)...

SentinelOne Integrations

System Integrations

The SentinelOne integration collects and parses data from SentinelOne REST APIs. This integration also offers the capability to perform response actions on SentinelOne hosts directly through the Elastic Security interface  Compatibility This module has been ...

How to Whitelist by IP Address in Office 365 and by Domain in Microsoft Defender for Office 365 Portal

O365 FAQs

Why Whitelist in Office 365? Whitelisting ensures the CyTech phishing simulation (PS) functions without issue and prevents PS emails from being automatically moved to the spam folder or notifying users about potential phishing emails. The Connection Filter Po...

Cyber Incident Management Module

CIM Module- Let's Start

Overview: Cyber Incident Management with Extended Detection and Response (XDR) and Managed Detection and Response (MDR) provides comprehensive protection against cyber threats by continuously monitoring and analyzing an organization’s digital environment. XDR...

Custom Windows Event Logs - Integration

System Integrations

Custom Windows Event Logs Collect and parse logs from any Windows event log channel with Elastic Agent. The custom Windows event log package allows you to ingest events from any Windows event log channel. You can get a list of available event log channels by...

Daily Update: October 22

Updates for 2024 October 2024

Here are the main updates of the CISO Workplace: Admin Updates: User Module Access Support

Windows Event Forwarding to Linux server using Nxlog

System Integrations

Introduction Windows Event Forwarding (WEF) allows the collection of event logs from multiple Windows machines and their forwarding to a centralized server. Using Nxlog, you can send these logs to a Linux server for storage and analysis. This documentation pr...

Windows Event Forwarding to Linux server using Powershell script

System Integrations

Overview This PowerShell script forwards Windows event logs to a Linux server using the syslog protocol. It captures specific event logs, sends them to the specified syslog server, and ensures that duplicate events are not sent. Prerequisites PowerShell o...

Daily Update: October 23

Updates for 2024 October 2024

Here are the main updates of the CISO Workplace: CIM Updates: When log source is unhealthy, the reason can now be displayed Admin Updates Package Creation Support

Daily Updates: October 21

Updates for 2024 October 2024

Here are the main updates of the CISO Workplace: Security Assessment Questionnaires Updates: Support for Point System in Questions CSPM Updates: Remediation JSON data copy to clipboard

Daily Update: October 24

Updates for 2024 October 2024

Here are the main updates of the CISO Workplace: CSPM Updates: Rabbit Hole Support for 2 components in Dashboard with Search Support

Daily Update: October 30

Updates for 2024 October 2024

Here are the main updates of the CISO Workplace: Compliance Updates: Audit Cycle Support  CIM Updates: Reports Page Improvements CISO Workplan Updates: Support for Workspaces

Sophos Integration

System Integrations

Overview The Sophos Central integration allows you to monitor Alerts and Events logs. Sophos Central is a cloud-native application with high availability. It is a cybersecurity management platform hosted on public cloud platforms. Each Sophos Central account ...

Daily Update: November 4

Updates for 2024 November 2024

Here are the main updates of the CISO Workplace: General Updates: Redirect to Home on Switch Client Bug fixes: Missing Requirements in Compliance Gap Analysis Updated the Severity Filter in CIM Kanban

Log Collector Installation - Windows

Log Collector Installations

Log Collector Installation in CISO Workplace This guide provides step-by-step instructions for installing the Elastic Agent as a log collector in the CISO Workplace environment. By following these steps, you’ll set up a secure, automated method for gathering ...

Daily Update: November 6

Updates for 2024 November 2024

Here are the main updates of the CISO Workplace: General Updates: Support for MSSP Dashboard CIM Updates: Indicate Log Source in Alerts Bug fix Updates: 1) Bug Fixes in CISO Workplan Module

Daily Update: November 8

Updates for 2024 November 2024

Here are the main updates of the CISO Workplace: Phishing Simulation Updates: Added link to Whitelist Manual CIM Updates: Filter alerts by tags such as Data Source Comments sorted in Descending Order Omit Alerts Fields with Elastic URLs Provide ...

Atlassian Bitbucket Integrations (New)

System Integrations

Introduction  The Bitbucket integration collects audit logs from the audit log files or the audit API.  Reference:  https://developer.atlassian.com/server/bitbucket/reference/rest-api/   Assumptions  The procedures described in Section 3 assume that a Log ...