You can pivot from various locations in the Helix Enterprise Web UI. For example:
You can pivot to other user interfaces from the Configure menu. For more information, see Pivoting to other user interfaces.
To pivot from the parsed field in an event in search query results, click the down arrow next to a parsed field or field name in the search results. For more information, see Pivoting from event data.
In the top of the alert details page, click View in Device or the appliance URL to pivot directly to the dashboard for the appliance.
In the Helix Enterprise Rule section of the alert details page, click
beside Name to pivot to the rule that generated the alert.For alerts mapped to Mandiant Managed Defense alerts, click the Investigation link in the MD section of the details page to go directly to the investigation details page in the Managed Defense portal.