Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

ManageEngine: Security Analytics Dashboard Tour in Log360

Manage Engine
06/30/2026
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


In this video, we are going to take a quick tour of the security analytics dashboard in Log360. When it comes to security monitoring, context is everything. The security analytics dashboard brings your detections together in one place. So in just a few clicks, you'll know what's happening and what to do next. So how do we access this dashboard? In your Log360 console, click on the security tab. That will bring you right into the security analytics view. And before we proceed any further, make sure your detection rules are active and properly configured because the insights here are powered by those rules. Right at the top, you'll notice four numbers. These give you a snapshot of detection by severity. All rules give you the total number of detections across the board. Trouble rules highlight the detection you really can't ignore. Trouble rules cover medium level risks that deserve a closer look. And attention rules show lower level anomalies, which are basically early warning signs. Each tile shows you whether detections are trending up or down. So you can spot spikes at a glance. And if you want more context, just click on any of these to see a detailed breakdown with columns like rule name, user, log source, and even MITRE attack mapping. You can also export the data in just a click. Moving on to dashboard widgets, below the metrics, you'll see a series of widgets. These aren't just charts. They give you different perspectives on your detections, helping you spot patterns and outliers quickly. Let's go through them. Detection pipeline. This shows the flow of detections and alerts broken down by severity. It's a great way to see at a glance how events are being escalated. With the detection by tactics widget, you can see which tactics attackers are using, like initial access, privilege escalation, or lateral movement. So you know which stages of an attack lifecycle are most active in your environment. Recent detections is your real time feed. It lists the latest triggered events along with details like the rule name, user, log source, and map tactics. Click into any detection and you'll get the full context. Who was involved, what system it came from, associated IPs, tags, and even mitigation recommendations. Top 5 users by detections. This chart highlights the users most associated with detections. If one account suddenly jumps to the top, that could signal a compromise or insider threat. Top 5 log sources by detections. Similar idea, but focused on devices. This helps you identify which systems are generating the most alerts, so you know where to focus your hardening efforts. Top 10 detections by rules. This ranks the most frequently triggered rules. It's useful for spotting recurring threats or fine tuning rules if you're seeing too many false positives. Next is detection trends. And finally, this widget shows detection activity over time, split by severity. It's perfect for spotting spikes, anomalies, or just understanding historical patterns. Each widget can be expanded for more detail or refreshed to make sure you're looking at the most up-to-date data. You also have a couple of handy controls here. You can adjust the time range to analyze detections over any custom or predefined period. That's great if you want to focus on just today, the past week, or a specific investigation window. And the manage rules option takes you straight into rule management, so you can adjust or fine tune the very rules that feed this dashboard. And that brings us to the end of our tour of the security analytics dashboard. You've seen how it gives you quick snapshots for fast decision making, widgets that break detections into patterns and trends, and MITRE mapping for valuable context. Altogether, it's designed to help you cut through noise and focus on what matters most. If you'd like to know more about Lock360 and how it can help your organization, contact our technical experts today.

TL;DR

  • The Security Analytics Dashboard in Log360 consolidates all security detections into a single view with severity-based metrics (All, Trouble, Warning, Attention) and trend indicators for quick anomaly identification.
  • Built-in MITRE ATT&CK mapping helps security teams understand which attack tactics are most active in their environment, from initial access to lateral movement and privilege escalation.
  • Multiple analytical widgets provide different perspectives on detections, including pipeline flows, top users and devices, frequently triggered rules, and historical trends to support pattern recognition and incident prioritization.

Summary

This demonstration walks through the Security Analytics Dashboard in ManageEngine Log360, a centralized interface for monitoring security detections across an organization. The dashboard provides real-time visibility into security events through severity-based metrics, MITRE ATT&CK framework mapping, and multiple analytical widgets. Users can access the dashboard through the security tab in the Log360 console, where they'll find detection counts categorized by severity levels (All, Trouble, Warning, and Attention rules), each showing trend indicators for quick anomaly identification. The interface includes specialized widgets for detection pipeline visualization, tactical analysis, real-time event feeds, and identification of top users, devices, and triggered rules. The dashboard supports customizable time ranges for historical analysis and provides direct access to rule management for fine-tuning detection logic. This consolidated view is designed to help security teams cut through alert noise, identify patterns, and prioritize incident response based on contextual information including user accounts, log sources, IP addresses, and mapped attack tactics.

Chapters

0:00 - Introduction
0:25 - Accessing the Dashboard
0:44 - Severity Metrics Overview
1:27 - Dashboard Widgets Tour
3:18 - Time Range and Controls

Key Quotes

0:13 "When it comes to security monitoring, context is everything."
0:16 "The security analytics dashboard brings your detections together in one place. So in just a few clicks, you'll know what's happening and what to do next."
3:53 "Altogether, it's designed to help you cut through noise and focus on what matters most."

FAQ

How do I access the Security Analytics Dashboard in Log360?

Click on the security tab in your Log360 console to access the Security Analytics Dashboard. Before using it, ensure your detection rules are active and properly configured, as the dashboard insights are powered by those rules.

What do the different severity levels mean in the dashboard?

The dashboard uses four severity categories: All Rules shows total detections across the board, Trouble Rules highlight critical detections that require immediate attention, Warning Rules cover medium-level risks deserving closer examination, and Attention Rules display lower-level anomalies that serve as early warning signs.


Categories:
  • » Data Protection
Channels:
News:
Events:
Tags:
  • Security Operations
  • Demo
  • Technical Deep Dive
  • Threat Intelligence
  • Getting Started
  • Security Analytics Dashboard
  • MITRE ATT&CK Framework
  • Detection Management
  • Security Event Monitoring
  • Incident Response
  • Log Management
  • Threat Detection
  • Security Visualization
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: ManageEngine: Security Analytics Dashboard Tour in Log360

              XStreaminars (watch here)

              • Aug
                27

                Becoming Agent Ready with Cyera: Essential Strategies and Insights

                08/27/202601:00 PM ET
                • Sep
                  03

                  Verge.io: Can You Afford Your Next Storage Refresh?

                  09/03/202601:00 PM ET
                  More events

                  Industry Events (Sponsor Hosted)

                  • Aug
                    27

                    Summer of Satori: FunFoneFarm's Transformation of Fraud into Seamless Integration

                    08/27/202601:00 PM ET
                    More events

                    Upcoming Webinar Calendar

                    • 08/27/2026
                      01:00 PM
                      08/27/2026
                      Becoming Agent Ready with Cyera: Essential Strategies and Insights
                      https://www.truthinit.com/index.php/channel/2081/becoming-agent-ready-with-cyera-essential-strategies-and-insights/
                    • 08/27/2026
                      01:00 PM
                      08/27/2026
                      Summer of Satori: FunFoneFarm's Transformation of Fraud into Seamless Integration
                      https://www.truthinit.com/index.php/channel/2086/summer-of-satori-funfonefarms-transformation-of-fraud-into-seamless-integration/
                    • 09/02/2026
                      12:00 PM
                      09/02/2026
                      Unified Data Security in Action: Uncover, Analyze, and Resolve Threats
                      https://www.truthinit.com/index.php/channel/2045/unified-data-security-in-action-uncover-analyze-and-resolve-threats/
                    • 09/03/2026
                      01:00 PM
                      09/03/2026
                      Verge.io: Can You Afford Your Next Storage Refresh?
                      https://www.truthinit.com/index.php/channel/2082/verge-io-can-you-afford-your-next-storage-refresh/
                    • 09/30/2026
                      04:00 AM
                      09/30/2026
                      AI Command Center: Optimizing Visibility and Control in Your Operations
                      https://www.truthinit.com/index.php/channel/2024/ai-command-center-optimizing-visibility-and-control-in-your-operations/
                    • 11/19/2026
                      01:00 PM
                      11/19/2026
                      360View: Govern, Secure & Recover Your Microsoft 365 Environment
                      https://www.truthinit.com/index.php/channel/2076/360view-govern-secure-recover-your-microsoft-365-environment/
                    Truth in IT
                    • Sponsor
                    • About Us
                    • Terms of Service
                    • Privacy Policy
                    • Contact Us
                    • Preference Management
                    Desktop version
                    Standard version