The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Viewing and managing alerts from a single page

Prev Next

On the Alerts page, you can view and manage all existing alerts. Each analyst may be assigned multiple alerts at the same time, so the ability to view alerts in a table allows you to easily navigate between them. The alerts table shows all alerts from various sources, for example email, network, endpoint, cloud, intel, and users. Each alert is assigned a severity and the most recent alerts are listed at the top of the table by default. For more information on assigning and filtering alerts, see Assigning alerts to an analyst and Filtering alerts.

A side panel gives you an overview of an alert, including how the alert was triggered, which assets were affected, what actions you should take, and so on. From here open an alert details page to investigate it in detail, document your findings, and suggests response actions to contain, mitigate, and remediate the alert. For more information, see About the alert details page.