Entity Analytics | Exabeam Documentation Portal
Entity Analytics offers analytics capabilities for entities beyond users such as hosts and IP addresses within an environment. For our purposes, the words asset and entity are used interchangeably. Entity Analytics assigns risk scores on any anomalous activities on Assets in an organization's environment by using machine learning and expert rules. In a single Asset Session, Entity Analytics may report risks related to a machine accessing many new hosts, a malware security alert received from a 3rd party system, and an entity connecting to a host in a new country. Notable Assets (assets that had an Asset Session score of at least 90) will appear on the homepage next to Notable Users. Entity Analytics creates an Asset Session in cases where logs indicate activities on assets. These can be logs such as Windows authentication, VPN or security alerts that contain events related to users and assets. In addition, asset sessions can be built from logs indicating device to device communication
Entity Analytics | Exabeam Documentation Portal Skip to main content Cloud-delivered Advanced Analytics Exabeam Advanced Analytics User Guide Table of Contents Table of Contents Cloud-delivered Advanced Analytics Exabeam Advanced Analytics User Guide Entity Analytics What is Exabeam? Exabeam’s Role Get to Know Exabeam Terminology Get to Know Exabeam Use Cases How Exabeam Works Build a Baseline for Each User and Asset Using Training Confidence in Assessing Events Role-Based Access Control Mask Data in the Advanced Analytics UI Data Masking Fields Obfuscate PII When Exporting Logs Mask Data in S
Explore this link on the map →related reading
- Get to Know a User Profile | Exabeam Documentation Portaldocs.exabeam.com
- What is Exabeam? | Exabeam Documentation Portaldocs.exabeam.com
- Security incident disclosure — July 2026huggingface.co
- Advanced threat detection with User and Entity Behavior Analytics (UEBA) in Microsoft Sentinel | Microsoft Learnlearn.microsoft.com
- Boxer: Data Analytics on Network-enabled Serverless Platformsresearch-collection.ethz.ch
- Anomalies detected by the Microsoft Sentinel machine learning engine | Microsoft Learnlearn.microsoft.com
- GitHub - mc2-project/mc2: A Platform for Secure Analytics and Machine Learning · GitHubgithub.com
- PostHogus.posthog.com
- GitHub - open-edge-platform/anomalib: An anomaly detection library comprising state-of-the-art algorithms and features such as experiment management, hyper-parameter optimization, and edge inference. · GitHubgithub.com
- Exabeam Advanced SIEM and User Behavior Analytics Gives MTI a Clearer View of Risk Posture | Exabeamexabeam.com
- Monitorsdocs.datadoghq.com
- UEBA (User and Entity Behavior Analytics): Complete 2025 Guideexabeam.com