Skip to content

[Security Solution] Users can Customize Prebuilt Detection Rules: Milestone 4 #179907

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
9 of 33 tasks
banderror opened this issue Apr 3, 2024 · 5 comments
Open
9 of 33 tasks
Assignees
Labels
8.19 candidate 9.1 candidate Feature:Prebuilt Detection Rules Security Solution Prebuilt Detection Rules area Meta Team:Detection Rule Management Security Detection Rule Management Team Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. v8.18.1 v8.19.0 v9.0.1 v9.1.0

Comments

@banderror
Copy link
Contributor

banderror commented Apr 3, 2024

Epic: https://github.com/elastic/security-team/issues/1974 (internal)
Milestones: <<>>

Status: In development.

Summary

Milestone 4: Short-term stabilization.

The goal of this milestone is to stabilize the functionality implemented in Milestone 3:

  • Complete the tests plans and add missing test coverage.
  • Fix higher-impact / low effort bugs that didn't make it to Milestone 3.
  • Continue optimizing performance and improving reliability.
  • Implement telemetry for prebuilt rules.
  • Pay pressing technical debt.

Useful info

Implementation tasks

Manual testing

Owner: @pborgonovi

Automated testing

Owners: @maximpn, @banderror

Performance and reliability

Owner: @xcrzx

High-priority and low-risk technical debt

Owner: ?

  • ?

Telemetry

Owner: @jkelas

Bug fixing: low effort

Owners: @dplumlee, @nikitaindik

Bug fixing: rule customization

Owners: @dplumlee

Bug fixing: rule installation

Owners: @dplumlee, @nikitaindik

Bug fixing: rule upgrade

Owners: @dplumlee, @nikitaindik

Bug fixing: licensing

Owners: @dplumlee

Product enhancements

Owners: @dplumlee

Documentation and UI copies

Owner: @nastasha-solomon

@banderror banderror added Meta Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. Team:Detection Rule Management Security Detection Rule Management Team Feature:Prebuilt Detection Rules Security Solution Prebuilt Detection Rules area labels Apr 3, 2024
@elasticmachine
Copy link
Contributor

Pinging @elastic/security-solution (Team: SecuritySolution)

@elasticmachine
Copy link
Contributor

Pinging @elastic/security-detections-response (Team:Detections and Resp)

@elasticmachine
Copy link
Contributor

Pinging @elastic/security-detection-rule-management (Team:Detection Rule Management)

@banderror banderror changed the title [Security Solution] Users can Customize Prebuilt Detection Rules: Milestone 4 (DRAFT) [Security Solution] Users can Customize Prebuilt Detection Rules: Milestone 4 Mar 21, 2025
@pborgonovi
Copy link
Contributor

@banderror please feel free to add some exploratory tests for the enhancements 😃

@banderror
Copy link
Contributor Author

banderror commented Mar 24, 2025

@pborgonovi Absolutely! I think we will be tracking exploratory testing efforts using the enhancement tickets themselves, instead of creating dedicated ticket(s) for that. See release progress checklists in #207172 and #215506. Let's sync on that later as a team.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
8.19 candidate 9.1 candidate Feature:Prebuilt Detection Rules Security Solution Prebuilt Detection Rules area Meta Team:Detection Rule Management Security Detection Rule Management Team Team:Detections and Resp Security Detection Response Team Team: SecuritySolution Security Solutions Team working on SIEM, Endpoint, Timeline, Resolver, etc. v8.18.1 v8.19.0 v9.0.1 v9.1.0
Projects
None yet
Development

No branches or pull requests

8 participants