---
title: Ivanti nZTA critical and major events detected
description: Datadog, the leading service for cloud-scale monitoring.
breadcrumbs: >-
  Docs > Datadog Security > OOTB Rules > Ivanti nZTA critical and major events
  detected
---

# Ivanti nZTA critical and major events detected

{% alert level="danger" %}
This rule is part of a beta feature. To learn more, [contact Support](https://docs.datadoghq.com/help/).
{% /alert %}
Classification:attack 
## Goal{% #goal %}

Detects critical and major severity events on the Ivanti nZTA platform, such as system errors, service disruptions, or security alerts, which may indicate system vulnerabilities or active threats.

## Strategy{% #strategy %}

This rule monitors logs for critical and major severity events flagged by the system and raises an alert when such events are detected, signaling the need for immediate investigation and response.

## Triage and Response{% #triage-and-response %}

1. Review the events in the system logs to identify their nature (e.g., service errors, security breaches, or misconfigurations).
1. Check for related anomalies, such as high resource usage, unauthorized access attempts, or unusual traffic patterns.
1. Investigate recent changes or updates to the platform that could have triggered the events.
1. Take corrective actions such as patching vulnerabilities, restarting affected services, or escalating to the security team for further analysis.
