Reporting
The Reporting module produces structured exports of your security metrics for use in board reports, compliance evidence, or external analytics tooling.
Reporting vs. Dashboards vs. Reveal: Use Dashboards for at-a-glance, in-platform metrics. Use Reveal for interactive data exploration. For a structured CSV or JSON export with a stable schema suitable for ingestion by external systems, ask SenseOn for a report. For a CSV summary you can download yourself, use the Overview Reports widget described below. For a written monthly security brief checked by the SenseOn SOC, see SenseOn Insight.
Accessing Reporting
The Settings > Reporting page is available to SenseOn staff only. Customer accounts, including Admin, cannot open it. Contact SenseOn if you need a report built from the metric groups below.
To download a summary of your own cases, use the Reports widget on the Overview page. Under Download custom report, choose the metrics to include and select Download CSV. The file covers the time range selected on the Overview and can include:
- Total case count
- Critical priority case count
- High priority case count
- Closed case count
- Observation count
- Most and least common detections
Report Metric Groups
A report can include any combination of the following metric groups.
1. Metadata
High-level information about the report itself:
- Organisation identifier
- Report time range
- Generated-at timestamp
- Generating user
2. General Value Metrics
Core security KPIs over the selected time range:
- Total cases opened
- Cases closed by outcome (True Positive, Benign True Positive, False Positive)
- Mean Time to Detect (MTTD)
- Mean Time to Respond (MTTR)
- Active devices and offline devices
3. Detection Rankings
Ranked lists of the most active detections and threats in your environment:
- Top 10 detection types by case volume
- Top 10 hosts by case volume
- Top 10 users by associated observations
4. MITRE ATT&CK Tactics Analysis
A breakdown of cases and observations by MITRE ATT&CK tactic and technique, useful for measuring coverage and identifying gaps in your detection portfolio.
Output Formats
CSV
Each metric group produces a separate sheet within a ZIP-packaged CSV bundle. The schema for each sheet is stable across releases so that downstream pipelines do not break when new releases ship.
JSON
A single JSON file containing all selected metric groups in a structured tree. Suitable for ingestion by SIEM, BI, or data warehouse tools.
Programmatic Access
Report metrics are also available through the SenseOn Connect API. See the API Reference for endpoint details.