Query Management
- You can query the log database to search for specific events on customer networks.
 
- The 'Investigation' feature lets you build granular queries, construct correlation rules and create custom dashboards.
 
- SOCaaP ships with a set of predefined queries for each customer and also allows you to create custom queries.
 

See the following sections for more details:
- Configure Event Queries
 
- Long Term Analysis
 
- Configure Custom Dashboards
 
- Event Field Selection Settings