Skip to content

Conversation

@w0rk3r
Copy link
Contributor

@w0rk3r w0rk3r commented Dec 8, 2025

Proposed commit message

Set `event.kind` to `alert` for the Wiz Defend data stream.

Summary

Related to elastic/detection-rules#5409.

This sets event.kind to alert in Wiz Defend events, so we can use our default alert promotion detection rules for these events.

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.
  • I have added an entry to my package's changelog.yml file.
  • I have verified that Kibana version constraints are current according to guidelines.
  • I have verified that any added dashboard complies with Kibana's Dashboard good practices

@w0rk3r w0rk3r self-assigned this Dec 8, 2025
@w0rk3r w0rk3r requested a review from a team as a code owner December 8, 2025 16:54
@w0rk3r w0rk3r added documentation Improvements or additions to documentation. Applied to PRs that modify *.md files. enhancement New feature or request Integration:wiz Wiz Team:Security-Service Integrations Security Service Integrations team [elastic/security-service-integrations] labels Dec 8, 2025
@elasticmachine
Copy link

Pinging @elastic/security-service-integrations (Team:Security-Service Integrations)

@andrewkroh andrewkroh removed the documentation Improvements or additions to documentation. Applied to PRs that modify *.md files. label Dec 8, 2025
@elastic-vault-github-plugin-prod

🚀 Benchmarks report

To see the full report comment with /test benchmark fullreport

@elasticmachine
Copy link

💚 Build Succeeded

History

cc @w0rk3r

@w0rk3r w0rk3r requested a review from efd6 December 8, 2025 20:42
@w0rk3r w0rk3r merged commit d9fe4dd into main Dec 8, 2025
7 checks passed
@w0rk3r w0rk3r deleted the wiz_alert branch December 8, 2025 22:17
@elastic-vault-github-plugin-prod

Package wiz - 3.10.0 containing this change is available at https://epr.elastic.co/package/wiz/3.10.0/

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

enhancement New feature or request Integration:wiz Wiz Team:Security-Service Integrations Security Service Integrations team [elastic/security-service-integrations]

Projects

None yet

Development

Successfully merging this pull request may close these issues.

7 participants