Identifying incidents

Prev Next

When managing data protection incidents in Protection Workspace, you can view, filter, and identify incidents to find important policy violations.

The Incident Manager allows you to filter incidents, according to:

  • Severity — Filter incidents based on the severity levels, such as critical, major, minor, warning, and informational.

  • Status — Filter incidents based on the current status.

  • Resolution — Filter incidents based on the resolution.

  • Incident type — Filter incidents based on the type of incident that triggered the rule.

  • Classification — Filters incidents based on the classification criteria identified.

  • Detected By — Filters incidents based on the product that detected the incident.

  • Users — Filter incidents based on the user who triggered the incident.

  • Rule Set — Filter incidents based on the rule set triggered when they were generated.

  • Scan Name — Filter incidents based on the name of the scan run (DLP Discover incidents only).

  • Repository Name — Filter incidents based on the name of the respository scanned (DLP Discover incidents only).

The incidents of different severities are represented using these colors:

Representation

Incident severity

Dark red

Critical

Pink

Major

Orange

Minor

Yellow

Warning

Light blue

Informational

Color-coded icons and numeric ratings based on severity level facilitate quick visual scanning of incidents.