In the SecurityCenter, alerts are categorized by severity to prioritize response actions. Here's a breakdown of the levels:
Critical ⚠️
- Definition: Immediate action required to prevent serious harm or data loss.
- Example: Unauthorized access to sensitive systems 🚨
- Action: Investigate and resolve within 1 hour.
High ⚠️
- Definition: Significant risk but not urgent.
- Example: Suspicious login attempts 🔍
- Action: Address within 24 hours.
Medium ⚠️
- Definition: Moderate risk with potential impact.
- Example: Outdated software vulnerabilities 🛡️
- Action: Plan remediation within a week.
Low ⚠️
- Definition: Minimal risk, mostly informational.
- Example: System maintenance schedule 📅
- Action: Monitor and document.
For deeper insights into managing alerts, visit our AlertManagement guide. 🔗