Skip to main content

Notifications Setup

Configure how and when you receive alerts about security events, threats, and system status.

Smart Alerting

Effective notification management ensures your security team stays informed of critical events without being overwhelmed.


Why Configure Notifications?

BenefitDescription
Immediate ResponseInstant alerts for critical threats
Reduced NoiseFilter by severity to focus on what matters
Scheduled UpdatesDaily/weekly summaries for non-critical events

Notification Channels

Email Notifications

Receive alerts via email with customizable templates and frequency controls.

FeatureDescription
FormatHTML formatting support
DigestBatch multiple events together
SchedulingImmediate, hourly, or daily

Best For: Critical alerts and scheduled summaries.


Configuring Notifications

Step 1: Navigate to Notification Settings

Go to Configuration → Notifications to access notification management.

You'll see:

  • Existing notification rules
  • Configured channels
  • Delivery status

Notification Frequency

FrequencyBest ForTypical Use Cases
ImmediateCritical threatsMalware, lateral movement, privilege escalation
Hourly DigestMedium severityAuth failures, config changes
Daily SummaryLow severitySystem health, agent updates
Weekly ReportExecutive summariesSecurity posture, compliance status

Best Practices

Severity-Based Routing

SeverityChannelFrequency
CriticalTeams/SlackImmediate
HighTeams/Slack + EmailImmediate
MediumEmailHourly digest
LowEmailDaily summary
📝 Notification Setup Checklist
  • Identify critical event types
  • Configure at least 2 channels (primary + backup)
  • Set appropriate severity thresholds
  • Create rules for each severity level
  • Test all notification paths
  • Document escalation procedures
  • Review rules quarterly

What's Next?

GuideDescription
Microsoft Teams IntegrationConfigure Teams with adaptive cards
Slack IntegrationSet up Slack notifications
Custom WebhooksIntegrate with external systems
Email AlertsConfigure email notifications