Intrusion detection alerts

Identifies intrusion detection alerts patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Engine
boost_regex
Confidence
medium
Confidence justification
structural regex with domain-specific anchors and constrained context replaces phrase-only marker. Added context gating and exclusion rules improve precision and reduce incidental matches.
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR
Data categories
credentials, security
Scope
wide
Risk rating
8
Platform compatibility
Purview: Compatible, GCP DLP: Compatible, Macie: Compatible, Zscaler: Compatible, Palo Alto: Degraded, Netskope: Unsupported

Pattern

(?is)\b(?:intrusion\s+detection|network\s+intrusion|signature\s+rule|alert\s+threshold|packet\s+inspection|anomaly\s+detection|intrusion\s+prevention|network\s+monitoring)\b

Corroborative evidence keywords

intrusion detection alerts, intrusion, detection, alerts, security, operations, threat, data, student, transcript, grade, [object Object], enrollment, FERPA, FAFSA, financial aid, tuition, degree, data record, database record (+22 more)

Proximity: 300 characters

Should match

Should not match

Known false positives