본문으로 건너뛰기

인텔리전스 및 거버넌스

보안 운영

Incident console for ERPStack security events, Wazuh evidence, Grafana trace/log references, triage, notes, and SLA lanes.

로컬 검증됨 증거 우선 모듈 페이지
기본 사용자
Platform admin Security operator Service operations Release owner
/app/security-operations
앱 기반 시각적 개체
SIEM Incident Console
앱 경로 열기
이벤트
테넌트 범위
분류
Persistent
심각도
SLA tracked
영역 상태 증거
조사 Incident table Wazuh drilldown
재고 작업 Queue health MTTA/MTTR
증거 Trace/log refs Grafana links

핵심 워크플로

운영자가 완료하는 데 모듈이 도움이 되는 것.

각 워크플로우는 마케팅 주장이 아닌 운영 경로로 작성되므로 구매자는 일상적인 모듈 적합성을 이해할 수 있습니다.

단계 1
Review suspicious and high-severity events
단계 2
Filter by tenant, module, severity, rule, and status
단계 3
Triage incidents with notes and ownership
단계 4
Drill into Wazuh, logs, traces, and evidence references

기능 체크리스트

운영자가 검색하는 방식에 따라 기능이 그룹화되었습니다.

3 기능 그룹

Incident triage

  • Severity lanes
  • Status workflow
  • 과제
  • Operator notes

Security evidence

  • Wazuh proof refs
  • Grafana trace links
  • Loki log refs
  • Raw event detail

Service operations

  • Source health
  • SLA breach alerts
  • MTTA/MTTR
  • Operator workload

연결된 모듈 맵

이 모듈이 ERPStack의 나머지 부분과 비즈니스 컨텍스트를 교환하는 방법입니다.

Module 관계
모든 모듈 Receives suspicious, privileged, compliance, and boundary events
Wazuh Security alert ingestion, rule groups, and threat-hunting evidence
Grafana Trace and log drilldowns for operational investigation
Platform Settings Security-sensitive setting changes and provider controls

거버넌스 및 보고

심각한 ERP 모듈에서 예상되는 제어 및 관리 가시성.

거버넌스
  • Durable incident workflow
  • Operator notes
  • Wazuh proof refs
  • SLA breach alerts
보고서
  • Incident workload
  • MTTA/MTTR
  • Source health
  • Operator queue

AI 적용 범위 정책

오늘 이 모듈에 대해 ERPStack가 솔직하게 주장할 수 있는 것은 무엇입니까?

AI 주장은 공식 에이전트 도구 레지스트리, 평가 증거, 안전 모드 제어 및 예약된 에이전트 모니터 준비 상태와 연결되어 있습니다. 로드맵 모듈은 모듈 기본 도구가 구현될 때까지 계획된 적용 범위만 표시합니다.

AI L2/L4 gap
보장 청구 Current AI coverage: Security and Compliance Hardening L2/L4 below target level through the official Agent Tool Registry.
거버넌스 증거 Governance evidence: 2 registered tools, 1 evaluation cases, tenant/RBAC/safe-mode registry controls, and AI log evidence.
예약된 모니터 Scheduled monitor readiness: 1/1 ready (Security Incident Triage Monitor).
L4/L5 경계 Raise Security and Compliance Hardening AI coverage from L2 to L4.

증거 우선 표준

모듈 페이지에서는 가치, 워크플로, 제어 및 증명을 한 곳에서 설명합니다.

이 페이지 구조는 실제 제품 경로와 비교할 수 있는 앱 파생 시각적 개체, 연결된 모듈 증거, 거버넌스 증명 및 보고서 컨텍스트를 갖춘 현재 공개 모듈 카탈로그를 지원합니다.

기능 명확성

구매자는 모호한 기능 주장 대신 구체적인 기능 그룹을 볼 수 있습니다.

운영적 적합성

워크플로, 사용자 및 연결된 모듈은 모듈이 속한 위치를 보여줍니다.

거버넌스 증명

RBAC, 감사, SIEM, 승인 및 보고가 최우선 문제로 표면화되었습니다.

검토 경로

공개 페이지는 앱 경로로 다시 연결되므로 검토자가 페이지 주장을 제품 표면과 비교할 수 있습니다.