diff --git a/detection_rules/schemas/definitions.py b/detection_rules/schemas/definitions.py index e4bf09efd57..00e1f5f55bf 100644 --- a/detection_rules/schemas/definitions.py +++ b/detection_rules/schemas/definitions.py @@ -123,6 +123,7 @@ 'Use Case: Log Auditing', 'Use Case: Network Security Monitoring', 'Use Case: Threat Detection', + 'Use Case: UEBA', 'Use Case: Vulnerability' ]