added

Smarter Rules & Monitors, Plus Advanced Searches and Lists in Event Explorer

🌟 New Feature Alert 🌟

The Verosint team delivers again! This release brings powerful new features for investigation and detection, helping you cut through noise, streamline workflows and monitors, and act with confidence.

Also, we’re at Oktane this week! Swing by our booth to share feedback and see the entire Verosint platform in action!

Rule & Monitor Impact Preview

See the number of events and unique accounts your selected filters would have impacted (last 7 days)

What’s New?

  • When creating Monitor or a Rule in a Workflow, you now see:

    • Events Count: Total events that match your selected filters (last 7 days)
    • Accounts Count: Total unique accounts impacted (last 7 days)
    • Daily Triggers Chart: Bar chart showing event volume and distribution (last 7 days)

Why Does This Matter?

  • Write smarter, more effective rules.
  • Prevents noisy workflows or monitors that generate thousands of unnecessary alerts.
  • Gives confidence that rules and monitors are tuned to detect real risks without alert fatigue.

Updated Event Explorer Search (Filter Builder)

What’s New?

  • Build advanced searches in Event Explorer using OR and +GROUP filters.
  • Unified filter-building experience across Event Explorer, Workflows, and Monitors.

Why Does This Matter?

  • Zero in on exactly the events you want, without noise.
  • Unified filter experience means less context-switching and faster investigations.

Lists in Event Explorer Filters

What’s New?

  • Filter events directly based on your Lists.

Why Does This Matter?

  • Investigate historical user activity based on the lists you care about.
📘

Event Explorer List searches are historical, showing items that were on the List when the event happened. Expired items may appear in results even if they’re no longer on the List.