heroui logo

Snyk System Policy Settings Changed

Panther Rules

View Source
Summary
The rule 'Snyk System Policy Settings Changed' is designed to monitor changes in Snyk policy settings, which can significantly impact how security and licensing issues are managed within the Snyk platform. This rule detects events related to the creation of new security and license policies, logging important details such as the event type, the user who initiated the change, and the specifics of the policy that was altered. The detection logic is encapsulated within specific log types: 'Snyk.GroupAudit' and 'Snyk.OrgAudit'. When the rule triggers, it provides alerts about any modifications made to the security or license policies, allowing administrators to ensure that such changes are authorized and expected. The severity of this rule is classified as high, indicating that unauthorized changes could lead to increased risks regarding compliance and software security.
Categories
  • Cloud
  • Web
  • Application
Data Sources
  • Script
  • Application Log
Created: 2023-03-28