
Dt Sec Contextualization
作者 Dynatrace9529e72715d9Apache-2.0161 个星标收录于 2026年10月8日更新于 2026年10月8日仓库7天前更新
Resolve security signals, IoC matches, or Smartscape nodes to runtime Dynatrace entities and connect findings on different entity levels through a shared runtime entity. Covers identity-to-Smartscape mapping (incl. container-image digest/ID to workload), cross-level topology (K8s pod detection vs. node CVE via pod-to-node), per-entity risk summarization, and coverage match recipes shared by dt-sec-insights. Trigger: "map these findings to workloads/hosts", "which workload does this container image run as", "do these findings relate through the same runtime entity", "enrich this IoC match with entity context", "which threat report mentions this IoC". Queries security.events ONLY for THREAT_REPORT IoC enrichment (matched IoC to attributing reports); Do NOT use for broad security.events posture/overview (use dt-sec-insights), general DQL (use dt-dql-essentials), IoC hunting in logs/spans (use dt-sec-ioc-hunting), or K8s observability outside the security cross-level context (use dt-obs-kubernetes).
- 9529e72715d9当前提交 9529e72发布于 2026年10月8日
来源与署名
来源:Dynatrace/dynatrace-for-ai位于skills/dt-sec-contextualization提交9529e72
许可证: Apache-2.0
内容归原作者所有。SourceWeft 从公开仓库中收录这些内容。
更多来自 Dynatrace/dynatrace-for-ai 的技能

Dt Setup React Native
Dynatrace
指导将 Dynatrace React Native 插件集成到 React Native 或 Expo 项目,涵盖依赖安装到验证的完整流程。

Dt Setup Android
Dynatrace
为现有 Android 项目接入 Dynatrace 移动代理,实现基础监控。

Dt Obs Services
Dynatrace
指导使用 Dynatrace DQL 查询监控服务性能、RED 指标、服务网格、消息传递和运行时遥测。

Dt Obs Predictive Analytics
Dynatrace
指导 Dynatrace 预测分析:使用 DQL 和分析器工具进行预测、容量饱和、趋势与异常检测。

Dt Obs Logs
Dynatrace
使用 DQL 查询、筛选和分析 Dynatrace 日志数据,用于故障排查与监控。

Dt Obs Log Semantic Mapping
Dynatrace
为供应商审计与 HTTP 日志集成建议并验证 Dynatrace 语义字典映射。
更多Security技能

Compliance Tracking
anthropics
跟踪合规要求、审计准备情况以及 SOC 2、ISO 27001、GDPR、HIPAA 和 PCI DSS 等框架的证据。

Dpop Adoption
指导为 Google OAuth 平台实现 OAuth 2.0 DPoP(RFC 9449)发送方约束刷新令牌。

Secops Triage
指导 SOC 分析师对 Google SecOps 安全告警进行分诊,从调查到关闭或升级。

Secops Investigate
指导 SOC 分析师在 Google SecOps 中使用 UDM 查询和时间线进行深入的安全事件与实体调查。

Secops Hunt
指导在 Google SecOps 中使用 UDM 查询、IoC 回溯、普遍性与异常分析进行主动威胁狩猎。

Secops Cases
通过 MCP 工具管理 Google Security Operations SOAR 案例的整个生命周期。