Report management
When you manage a large amount of data, you must ensure that the data is properly arranged and visualized. Data collected as a result of monitoring information security and displayed on the MaxPatrol SIEM main page dashboards, can be exported to PDF files. The files are called reports and can be used to do the following:
- Analyze asset, event, or incident data—for example, determine what assets are most involved in incidents.
- Examine data on different types of vulnerabilities detected in the system (for example, the average vulnerability lifetime dynamics).
- Evaluate the vulnerability management process in your organization (for example, the ratio of automatically (using policies) and manually processed vulnerabilities marked as "danger").
- Identify the most critical data—for example, in what region incidents caused the most significant losses.
- Find data trends and anomalies that cannot be detected manually—for example, how network perimeter protection affects the security of a host.
You can manage reports on the Reports page (System → Reports).
The Reports page workspace contains the following elements:
- Table of report generation tasks with detailed information about all of the tasks
- Generation history panel with information about the date and time of report generation and report availability for downloading
- Summary panel with detailed information about the report generation task selected in the table of report generation tasks
You can create reports or use template-based reports with predefined settings, copy, edit, and delete reports. You can also configure scheduled report generation or generate reports manually.