[RAM][Security Solution] Include the EQL building block alerts in the alerts context so that the action-per-alert context for EQL sequences has the entire sequence #155748
Labels
enhancement
New value added to drive a business result
Near Future Work
Tickets we want to work on in the near future.
Team:Detection Engine
Security Solution Detection Engine Area
Describe the feature:
Original comment
Include the EQL building block alerts in the alerts context so that the action-per-alert context for EQL sequences has the entire sequence.
cc @marshallmain
The text was updated successfully, but these errors were encountered: