Skip to content

[Internal]: Attack Discovery API Released as Tech Preview in 9.2 #3152

@dhru42

Description

@dhru42

Description

We are rolling out API support for Attack Discovery as Tech Preview in Elastic Security. Documentation needs to provide an overview of how customers can programmatically interact with Attack Discovery (ex: triggering discoveries, retrieving results, scheduling, and integrating with other workflows).

Goals

  • Create customer-facing documentation that explains the purpose and benefits of Attack Discovery API.
  • Provide high-level usage patterns (ex: how analysts or automation systems might call the API to triage alerts).

Resources

n/a

Which documentation set does this change impact?

Elastic On-Prem and Cloud (all)

Feature differences

n/a

What release is this request related to?

9.2

Serverless release

tbd

Collaboration model

The documentation team

Point of contact.

Main contact: @andrew-goldstein

Stakeholders: @jamesspi

Metadata

Metadata

Labels

Team:ExperienceIssues owned by the Experience Docs Team

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions