You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: blog-cse/2025-09-22-application.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -12,6 +12,6 @@ import useBaseUrl from '@docusaurus/useBaseUrl';
12
12
13
13
We’re excited to announce the new insights summary pane, an AI-generated synopsis for each insight that describes the threat incidents that led to its creation. This helps security teams understand incidents faster and accelerate response time. The summary is generated by Sumo Logic's Summary Agent, an agentic AI tool.
Copy file name to clipboardExpand all lines: docs/cse/get-started-with-cloud-siem/about-cse-insight-ui.md
+1-40Lines changed: 1 addition & 40 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -99,7 +99,7 @@ The left pane of the insight details page displays detailed information about th
99
99
1.**Actions.** The [insight actions](/docs/cse/administration/create-cse-actions#insight-actions) defined in your environment.
100
100
1.**Close Insight.** Use this option to close an insight. When you click this option, you’re prompted to select an insight resolution.
101
101
1.**Delete Icon.** Use this option to delete an insight. You’ll be prompted to confirm your choice.
102
-
1.**Summary**. [Insight summary](#insight-summary) generated by AI.
102
+
1.**Summary**. [Insight summary](/docs/cse/get-started-with-cloud-siem/insight-summary/) generated by AI.
103
103
1.**Status.** Current status of the insight.
104
104
1.**Assignee** and **Assign to me.** Shows the current assignee and allows you to assign yourself the insight.
105
105
1.**Entity.** The entity the insight fired on.
@@ -113,45 +113,6 @@ The left pane of the insight details page displays detailed information about th
113
113
1.**Comments.** Displays any comments that have been made on the insight, and a field for adding a comment.
114
114
1.**Show Comments/History.** The controls allow you to switch between viewing the insight's comments and history.
115
115
116
-
### Insight summary
117
-
118
-
The insight **Summary** pane provides a concise, actionable summary of threat incidents based on triggered signals. It consolidates key details to facilitate quick understanding and response by security teams. The summary is generated by Sumo Logic's Summary Agent, an agentic AI tool.
Help us refine the tool by using the thumbs-up or thumbs-down buttons to provide feedback on the effectiveness of the summary presented. Clicking the thumbs-down button gives you the opportunity to provide additional feedback.
124
-
:::
125
-
126
-
The summary is generated when an insight is created, and is regenerated whenever the insight is modified, keeping it current with added or removed signals. Summaries are not only generated for insights created by the system, but also custom insights created manually by users via the UI.
127
-
128
-
:::sumo Micro Lesson
129
-
130
-
Watch this micro lesson to learn more about the insight summary.
* No customer data or personally identifiable information (PII) is used to train models.
150
-
* Processing is limited to schemas and sample fields, and is reviewed for compliance.
151
-
* The AI is powered by Amazon Bedrock, with rolling expiration for temporary query history.
152
-
***Can insight summaries be accessed by the API?**<br/>Yes. The summaries are included in output when you run the [insight APIs](https://api.sumologic.com/docs/sec/#operation/GetInsight) in the [Cloud SIEM APIs](https://help.sumologic.com/docs/api/cloud-siem-enterprise/).
153
-
***Is there an additional cost?**<br/>No. The insight summary is included as part of Cloud SIEM at no extra licensing fee.
154
-
155
116
### Signal visualization area
156
117
157
118
At the top of the insight details page, you’ll see a signal timeline that visualizes the insight’s attached signals, which are the signals that caused the insight to be created, and any signals that have been manually added to the insight.
Copy file name to clipboardExpand all lines: docs/cse/get-started-with-cloud-siem/index.md
+6Lines changed: 6 additions & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -44,6 +44,12 @@ This guide helps you get started using Cloud SIEM for threat hunting.
44
44
<p>Learn about the contents of the insights UI in Cloud SIEM.</p>
45
45
</div>
46
46
</div>
47
+
<divclassName="box smallbox card">
48
+
<divclassName="container">
49
+
<ahref="/docs/cse/get-started-with-cloud-siem/insight-summary"><img src={useBaseUrl('img/icons/security/siem-challenges.png')} alt="Shield on a workflow icon" width="40"/><h4>Insight Summary</h4></a>
50
+
<p>Learn how the insight summary pane uses AI to provide summaries of threat incidents.</p>
description: The insight Summary pane uses AI to provide summaries of threat incidents.
5
+
---
6
+
7
+
import useBaseUrl from '@docusaurus/useBaseUrl';
8
+
import Iframe from 'react-iframe';
9
+
10
+
The insight **Summary** pane provides a concise, actionable summary of threat incidents based on triggered signals. It consolidates key details to facilitate quick understanding and response by security teams. The summary is generated by Sumo Logic's Summary Agent, an agentic AI tool.
11
+
12
+
The summary is generated when an insight is created, and is regenerated whenever the insight is modified, keeping it current with added or removed signals. Summaries are not only generated for insights created by the system, but also custom insights created manually by users via the UI.
Help us refine the tool by using the thumbs-up or thumbs-down buttons to provide feedback on the effectiveness of the summary presented. Clicking the thumbs-down button gives you the opportunity to provide additional feedback.
18
+
:::
19
+
20
+
:::sumo Micro Lesson
21
+
22
+
Watch this micro lesson to learn more about the insight summary.
* No customer data or personally identifiable information (PII) is used to train models.
42
+
* Processing is limited to schemas and sample fields, and is reviewed for compliance.
43
+
* The AI is powered by Amazon Bedrock, with rolling expiration for temporary query history.
44
+
***Can insight summaries be accessed by the API?**<br/>Yes. The summaries are included in output when you run the [insight APIs](https://api.sumologic.com/docs/sec/#operation/GetInsight) in the [Cloud SIEM APIs](https://help.sumologic.com/docs/api/cloud-siem-enterprise/).
45
+
***Is there an additional cost?**<br/>No. The insight summary is included as part of Cloud SIEM at no extra licensing fee.
0 commit comments