home/categories/backend/elastic-agent-skills-skills-security-detection-rule-management-skill-md
backenddevelopment

security-detection-rule-management

Create, tune, and manage Elastic Security detection rules (SIEM and Endpoint). Use for false positives, exceptions, new coverage, noisy rules, or rule management via Kibana API.

elastic
maintainer
elastic
Updated 3/13/2026
Stars
314
Forks
19
quick start

Installation and usage

Create, tune, and manage Elastic Security detection rules (SIEM and Endpoint). Use for false positives, exceptions, new coverage, noisy rules, or rule management via Kibana API.

Installation
$ install --globalskills.sh
Usage

Once installed, you can use this skill by running the following command in your terminal:

skills use security-detection-rule-management