---
title: BeyondTrust Identity Security Insights endpoint risk detected
description: Datadog, the leading service for cloud-scale monitoring.
breadcrumbs: >-
  Docs > Datadog Security > OOTB Rules > BeyondTrust Identity Security Insights
  endpoint risk detected
---

> For the complete documentation index, see [llms.txt](https://docs.datadoghq.com/llms.txt).

# BeyondTrust Identity Security Insights endpoint risk detected

{% alert level="danger" %}
This rule is part of a beta feature. To learn more, [contact Support](https://docs.datadoghq.com/help/).
{% /alert %}
Classification:attack 
## Goal{% #goal %}

Detect endpoint risks that may expose user accounts, credentials, or authentication sessions to compromise.

## Strategy{% #strategy %}

Monitor activity and endpoint signals to identify risk indicators associated with compromised, unmanaged, or non-compliant devices.

## Triage and Response{% #triage-and-response %}

1. Identify the affected account or device associated with the detected activity `{{@entityName}}`.
1. Review the information associated with the alert to understand the nature and potential impact of the activity.
1. Validate whether the endpoint and activity align with organizational security standards and acceptable use policies.
1. If the endpoint is non-compliant, take appropriate actions in accordance with incident response and endpoint security.
