FortiSIEM
FortiSIEM provides Security Information and Event Management (SIEM) and User and Entity Behavior Analytics (UEBA)
FortiKoala
Staff
Staff
Article Id 197923
Description

What are ZoneFox Analyst Reports


Scope

Key Concepts


Solution

The ZoneFox Analyst report is now included within your ZoneFox UI.  This runs an automated report, allowing you to export charts and raw data for a range of behaviour. 


Navigate to Reports > ZoneFox Analyst report in dropdown.  From here you can view the automated report, which shows headline activity for a number of key user behaviours, including;


  • Sensitive files moved

  • Removable device use

  • Executable files downloaded

  • Use of Cloud storage applications

  • Use of hacking tools

  • Remote desktop applications

  • Disk imaging applications

  • Private key files


ZoneFox Recommendations


Click to show or hide recommendations.  These provide security advice on how to protect your network from the behaviours identified.


Interactive Elements


Click on users displayed within the report, and you will be taken to the Threat Hunting page with the relevant search criteria already populated.


Export Report


Elements of the ZoneFox Analyst report can be exported as CSV files or JSON for use in other reporting tools.  A formatted version of the report with a title and end page can also be printed from the UI.











Contributors