Viewing Alerts

To view all the alerts created, click on the Alerts icon on the left navigation bar of the Playbooks window.

Figure 23: Alerts icon

This will show a grid-view of all resolved and unresolved alerts.

Figure 24: Alerts page

Let us look at an example of Google Drive alert. Here, we can see that 3 rule sets have been violated and thus 3 alerts have been triggered. This alert has impacted 67 objects and 80 entities.

Figure 25: Example of Alerts

Click on the alert. This will show the rule sets that have been violated.

In Fig.22 we can see that the 3 rule sets that have been violated are ‘ExternalUsers’, ‘Client Info’ and ‘InternalUsers’.

Figure 26: View Alert Details

External User

The External User cards are sorted based on the number of objects accessible by external users, with the alerts having the highest number of externally accessible objects appearing at the top. This sorting mechanism enables users to quickly identify and prioritize alerts that require immediate attention due to the potential risk associated with external user access.

Figure 27: External User

Attributes

The Attributes section displays the specific attributes that were detected in the objects impacted by the alert. It provides an overview of the different types of attributes found, such as Address, First Name, Middle Name, Name, and USA Social Security Number (SSN). For each attribute, it shows the sensitivity level (e.g., Medium, High) and the number of files or attribute instances associated with it.

Figure 28: Attributes

Entities Impacted

The Entities Impacted section shows the individuals or entities whose sensitive data was detected in the objects impacted by the alert. It presents a list of the entity names along with the number of attributes associated with each entity and the number of objects in which their data was found. This view allows users to quickly identify the specific entities affected by the alert and assess the scope of the data exposure.

Figure 29: Entities Impacted


Viewing File Classification-based Alerts

  • File classification-based alerts are generated when a document's file classification matches the conditions defined in the corresponding labeling policy.

  • In the Alerts page, file classification-based alerts are displayed alongside other types of alerts.

  • The alert details include information about the file classification that triggered the alert, the associated label, and the affected documents.

Last updated