FortiSIEM
FortiSIEM provides Security Information and Event Management (SIEM) and User and Entity Behavior Analytics (UEBA)
FortiKoala
Staff
Staff
Article Id 198375
Description

How do I add an alert to an investigation


Scope

FAQ


Solution

Click on an alert to see further details.  From here you can choose to start a new investigation based on this alert, by clicking Start Investigation;



If you want to add the alert to an existing investigation, choose the investigation you want from the dropdown menu below.




Contributors