AD

Incident response

Manage active investigations

Coordinate ownership, status, and response actions for suspicious events and confirmed threats.

Response orchestration

Incident response panel

Track ownership, priority, and containment progress across open investigations.

Privilege escalation investigation

critical

Owner: SOC Tier 2 • ETA: 12 min

open

Compromised service account rotation

high

Owner: IR Team • ETA: 31 min

contained

Suspicious API token replay

medium

Owner: Cloud Security • ETA: 48 min

open

Login attempt monitoring

Suspicious identity events, privileged access, and authentication outcomes.

naomi.ameh

success

Finance Admin • Lagos, NG • MacBook Pro

102.89.45.1 • 3m ago

Risk score

18

godstime.akokoba

success

Operations • Abuja, NG • Windows 11

105.112.24.8 • 7m ago

Risk score

11

svc.payroll

failed

Service Account • Amsterdam, NL • Linux Host

185.22.11.74 • 9m ago

Risk score

87

admin.root

failed

Privileged • Johannesburg, ZA • Ubuntu Server

41.71.188.9 • 13m ago

Risk score

93

pamela.ap

success

Vendor Ops • London, UK • ChromeOS

51.103.14.22 • 18m ago

Risk score

34