Intrusion detection alerts

Identifies intrusion detection alerts patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Engine
boost_regex
Confidence
medium
Confidence justification
structural regex with domain-specific anchors and constrained context replaces phrase-only marker. Added context gating and exclusion rules improve precision and reduce incidental matches.
Detection quality
Mixed
Jurisdictions
global
Regulations
GDPR
Data categories
credentials, security
Scope
wide
Platform compatibility
Purview: Compatible, GCP DLP: Compatible, Macie: Compatible, Zscaler: Compatible, Palo Alto: Degraded, Netskope: Unsupported

Pattern

(?is)\b(?:intrusion\s+detection|network\s+intrusion|signature\s+rule|alert\s+threshold|packet\s+inspection|anomaly\s+detection|intrusion\s+prevention|network\s+monitoring)\b

Corroborative evidence keywords

intrusion detection alerts, intrusion, detection, alerts, security, operations, threat, data, student, transcript, grade, GPA, enrollment, FERPA, FAFSA, financial aid, tuition, degree, field, column (+27 more)

Proximity: 300 characters

Should match

Should not match

Known false positives