Terminology Index
Glossary
1801 terms
Showing 577-608 of 1801 terms
Email Alerts
SOC alerts generated from email security signals, such as detected phishing, malicious attachments or links, or suspicious sender behavior, which analysts triage to catch one of the most common attack delivery channels.
Email is a primary attack vector, so email alerts, from secure email gateways and detection tools, are a frequent part of an analyst's queue: flagged phishing, malware-laden attachments, suspicious links, spoofing, and business email compromise indicators. Triaging them well means assessing the message, sender, and any user interaction, since email threats blend social engineering with technical payloads and often signal the start of a broader intrusion.
Introduced in: SOC Analyst Fundamentals
Examples
- An alert on a phishing email that reached a user's inbox.
- A flagged attachment detected as malicious by the email gateway.
- A suspicious sender or spoofing alert indicating possible business email compromise.
No related terms linked yet.
