Orange County NC Website
82 <br /> Orange County August 8,2024 <br /> ASTRO 25 Managed Detection and Response 24-177976/Cybersecurity Services <br /> M <br /> Dashbaard ...a <br /> Alerts Cwliq fii0r. LJgar Accesa USOC Monlaoring On <br /> ® —, <br /> =Th m <br /> Rewrution Metrics Pesalulion Metrics Rpfctla4rn Me4ica solution Metrics <br /> fl- PaNlDaYs. 0 1—1- 0 Cbaetl Pnt]Dryx 33 Cl—Ras[IDrys: 31 <br /> nsq.ResdNian. Na Puy.Pesoluliun. X0 a,.spaWlgrc e1Un 11Vs.RnClllive <lft <br /> M..vr. Le,+. Na Mw RasNul.Ln: tla i6m Mar gpryul:oa', Lm Mw Rno4lm' 78- <br /> Q S.Ufity Advi—iee <br /> 7 Day TimWing <br /> Akn T—da Dnee n—� °L Pa^�^—Y• <br /> Total Events Pra[Bssed a .en br lnaemve <br /> 164X6.246 rre% <br /> Total Alerts Created o on le crux ra,umaawra.from Tellwero <br /> p Baeacoxfr <br /> 74 tl% uLoa ayes ulai uLeo <br /> aaeas 6mye Cneme aHpy L,ea.rc <br /> •ffns �[Yfee Vex.V a <br /> UPA40.ilispsplp ■leased Serriee Connecrors fps Alertld YNn <br /> iFlu valet/Clurge-0.w5 ae rnen pa ngoue®aekarne.ean a0 <br /> MS[b�Loo See Y ar oe_. If Mreese44euri.L of sera-iliuls. npgmvnelavun_ xo <br /> I[nupllance wrm L 0.ppia-ce pamganpofnriss.um <br /> Figure 1-1: ActiveEye Interface <br /> Dashboard <br /> Key information in the ActiveEye Portal is summarized on the dashboard. This dashboard provides <br /> details about open alerts, an overview of alert categories, alert processing, key performance indicators <br /> (KPI), open security cases, and recent threat advisories. Also, users can access more in-depth <br /> information like security cases, alert details, alert trends, reports, and group communications. <br /> Security Cases <br /> When the Customer and Motorola Solutions identify a threat, the SOC will create a security case. <br /> Through the ActiveEye Portal, the Customer can view details of current or past cases, create new <br /> cases, or respond to ongoing cases. <br /> Alert Details and Trends <br /> Alerts can be evidence of a past, active, or developing threat. ActiveEye records relevant data for each <br /> alert, enabling users to quickly view its triggers, systems it impacts, and any actions taken to address <br /> the alert. ActiveEye Portal also provides tools for reviewing groups of alerts based on key attributes or <br /> time periods. Attribute filters enable users to toggle which alert groups ActiveEye Portal shows, helping <br /> to spot trends or threat activity. Users can also compare alert logs for specific time periods to determine <br /> if specific trends are associated with a threat or are false positives. <br /> Investigations and Reporting <br /> ActiveEye Portal includes robust ad hoc reporting capabilities, which will provide important, additional <br /> information about active and historical threats. Users can share information outside of ActiveEye Portal <br /> by downloading reports in .csv or Json format. <br /> In addition to ad hoc reporting, ActiveEye Portal can provide a daily email summary and monthly report. <br /> Daily email summaries can include alert counts, security cases opened or closed, saved queries that <br /> have new data, and detailed endpoint security statistics. If needed, ActiveEye Portal can send one or <br /> more summary emails with different content for different groups. Monthly reports are available as a <br /> PDF download. <br /> Solution Description ®MOTOROLASOLUPONS <br /> Use or disclosure of this proposal is subject to the restrictions on the cover page. <br /> Motorola Solutions Confidential Restricted <br /> Page 1-3 <br />