Fortinet white logo
Fortinet white logo

User Guide

Case Dashboard

Case Dashboard

Clicking Cases > Overview brings you to the Case Dashboard. It consists of 3 sub-dashboards.

Case Health Dashboard

Case Health Dashboard provides an easily accessible summary of currently active cases.

  • The first row shows the total number of New, Open, Escalated and Overdue cases. A Case is considered Escalated if it is close to violating the Due date and the exact criteria is specified in the associated Case management Policy.
  • Second and Third row charts show the details of these Case types.
  • For New Cases, the specific cases and their severity is shown along with a count by Severity.
  • For Open Cases, the number of Open cases by Severity and by Analyst are provided.
  • For Escalated Cases, the listing of cases is provided.
  • For Overdue Cases, the listing of cases is provided.
  • A Case Inflow (New) and Case Outflow (Closed) Trend is provided.

See diagram below for information that each Case Health Dashboard panel provides.

New - Number of New Cases Open - Number of Open Cases Escalated - Number of Escalated Cases Overdue - Number of Overdue Cases
New Cases - List of New Cases Open by Severity - Chart shows Open Cases by their severity (Critical, High, Medium, Low). Escalated Cases - List of Escalated Cases OverDue Cases - List of OverDue Cases
New by Severity - Chart shows New Cases by their severity (Critical, High, Medium, Low). Open Cases by Analysts - Chart shows number of open cases associated with assignees. Case Trend - A Case Inflow (New) and Case Outflow (Closed) Trend chart

Case KPI Dashboard

Case KPI Dashboard shows the following information:

  • Event to Case Conversion chart shows the relative proportions of Events, Incidents and Cases in a time window. This demonstrates that FortiSIEM only requires users to deal with a small number of cases instead of much larger number of Incidents and Events.
  • Data Source chart shows:
    • Which Data Sources lead to Incidents by Severity.
    • Which Incidents lead to Cases by Severity.
  • Case Status charts the number of cases currently in each Case Status category along with the average time spent in each category.
  • Case Stage charts the number of cases currently in each Case Stage category along with the average time spent in each category.

Case Handling Dashboard

Case Handling Dashboard shows the following information:

  • Closed Cases By Code shows the proportion of Case Close Codes among Closed Cases.
  • Assigned Case Trend By User chart shows the number of Cases that top users are working on a day by day basis.
  • Resolution Time By User chart shows the top analysts taking the most time to resolve cases.
  • Resolution Time By Case chart shows the top Cases taking the most time to resolve.

Case Dashboard

Case Dashboard

Clicking Cases > Overview brings you to the Case Dashboard. It consists of 3 sub-dashboards.

Case Health Dashboard

Case Health Dashboard provides an easily accessible summary of currently active cases.

  • The first row shows the total number of New, Open, Escalated and Overdue cases. A Case is considered Escalated if it is close to violating the Due date and the exact criteria is specified in the associated Case management Policy.
  • Second and Third row charts show the details of these Case types.
  • For New Cases, the specific cases and their severity is shown along with a count by Severity.
  • For Open Cases, the number of Open cases by Severity and by Analyst are provided.
  • For Escalated Cases, the listing of cases is provided.
  • For Overdue Cases, the listing of cases is provided.
  • A Case Inflow (New) and Case Outflow (Closed) Trend is provided.

See diagram below for information that each Case Health Dashboard panel provides.

New - Number of New Cases Open - Number of Open Cases Escalated - Number of Escalated Cases Overdue - Number of Overdue Cases
New Cases - List of New Cases Open by Severity - Chart shows Open Cases by their severity (Critical, High, Medium, Low). Escalated Cases - List of Escalated Cases OverDue Cases - List of OverDue Cases
New by Severity - Chart shows New Cases by their severity (Critical, High, Medium, Low). Open Cases by Analysts - Chart shows number of open cases associated with assignees. Case Trend - A Case Inflow (New) and Case Outflow (Closed) Trend chart

Case KPI Dashboard

Case KPI Dashboard shows the following information:

  • Event to Case Conversion chart shows the relative proportions of Events, Incidents and Cases in a time window. This demonstrates that FortiSIEM only requires users to deal with a small number of cases instead of much larger number of Incidents and Events.
  • Data Source chart shows:
    • Which Data Sources lead to Incidents by Severity.
    • Which Incidents lead to Cases by Severity.
  • Case Status charts the number of cases currently in each Case Status category along with the average time spent in each category.
  • Case Stage charts the number of cases currently in each Case Stage category along with the average time spent in each category.

Case Handling Dashboard

Case Handling Dashboard shows the following information:

  • Closed Cases By Code shows the proportion of Case Close Codes among Closed Cases.
  • Assigned Case Trend By User chart shows the number of Cases that top users are working on a day by day basis.
  • Resolution Time By User chart shows the top analysts taking the most time to resolve cases.
  • Resolution Time By Case chart shows the top Cases taking the most time to resolve.