Kaspersky Next XDR Expert allows you to track effort for incident-related work. This helps calculate the time spent by an analyst on incident analysis and response, evaluate analysts’ workload, and allocate labor resources efficiently.
Analysts can manually add details of their effort on incident-related work, including time spent and, if necessary, effort category.
Effort categories can be viewed, added, edited or deleted through the API. To manage effort categories, you must have one of the following XDR roles: Main administrator, Tenant administrator, SOC administrator.
To manage incident effort, you must have one of the following XDR roles: Main administrator, Tenant administrator, Junior analyst, Tier 1 analyst, Tier 2 analyst, SOC manager, Approver.
Kaspersky Next XDR Expert also allows you to generate and export an effort report by analysts or groups for further analysis.