Incident triage
- Severity lanes
- Status workflow
- 作业
- Operator notes
找不到互联网连接
正在尝试重新连接
出现错误!
正在尝试重新连接
情报与治理
Incident console for ERPStack security events, Wazuh evidence, Grafana trace/log references, triage, notes, and SLA lanes.
| 区域 | 状态 | 证据 |
|---|---|---|
| 调查 | Incident table | Wazuh drilldown |
| 库存作业 | Queue health | MTTA/MTTR |
| 证据 | Trace/log refs | Grafana links |
核心流程
每个工作流程都被编写为操作路径,而不是营销主张,因此买家可以了解日常模块的配合情况。
功能清单
该模块如何与 ERPStack 的其余部分交换业务上下文。
| Module | 关系 |
|---|---|
| 所有模块 | Receives suspicious, privileged, compliance, and boundary events |
| Wazuh | Security alert ingestion, rule groups, and threat-hunting evidence |
| Grafana | Trace and log drilldowns for operational investigation |
| Platform Settings | Security-sensitive setting changes and provider controls |
严格的 ERP 模块所期望的控制和管理可见性。
AI 覆盖范围政策
AI 声明与官方代理工具注册表、评估证据、安全模式控制和预定代理监控准备情况相关。在实施模块本机工具之前,路线图模块仅显示计划的覆盖范围。
AI L2/L4 gap| 承保索赔 | Current AI coverage: Security and Compliance Hardening L2/L4 below target level through the official Agent Tool Registry. |
|---|---|
| 治理证据 | Governance evidence: 2 registered tools, 1 evaluation cases, tenant/RBAC/safe-mode registry controls, and AI log evidence. |
| 定时监控 | Scheduled monitor readiness: 1/1 ready (Security Incident Triage Monitor). |
| L4/L5边界 | Raise Security and Compliance Hardening AI coverage from L2 to L4. |
证据第一的标准
此页面结构支持当前的公共模块目录,其中包含应用程序派生的视觉效果、连接模块证据、治理证明和报告上下文,可以与真实产品路线进行比较。
买家可以看到具体的功能组,而不是模糊的功能声明。
工作流程、用户和连接的模块显示模块所属的位置。
RBAC、审计、SIEM、批准和报告作为首要问题出现。
公共页面链接回应用程序路线,以便审阅者可以将页面声明与产品表面进行比较。