- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
raleighj
Engager
02-12-2025
03:45 PM
Build Query to Show history of alert management to include Analyst Name, Status, Time in Analysts' queue -
Hello, we are trying to pinpoint with a report or a simple query how long each analyst retains an alert in their queue. It will help us with managing alerts more efficiently/determine bottlenecks in our process.
It should be able to be displayed in a table if possible.
Thank you, in advance.
1 Solution
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

gcusello

SplunkTrust
02-12-2025
11:24 PM
Hi @raleighj ,
I suppose that you're using Enterprise Security, if yes, see the Manager Security Posture Dashboard to have these information.
Ciao.
Giuseppe
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

gcusello

SplunkTrust
02-12-2025
11:24 PM
Hi @raleighj ,
I suppose that you're using Enterprise Security, if yes, see the Manager Security Posture Dashboard to have these information.
Ciao.
Giuseppe
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
raleighj
Engager
02-19-2025
07:42 PM
Thank you, Giuseppe!
I appreciate the help!
