platform.md

The Platform

This section contains documentation for all major areas of the Dropzone platform. It serves as a high-level guide to help users understand where things live, what each section is used for, and how different parts of the platform fit together.

Use this section as a starting point before diving into feature-specific or best-practice documentation.


Platform Navigation at a Glance

The Dropzone platform is organized around a few core workflows:

Each section below corresponds to a primary area of the UI.


Dashboard

The Dashboard provides a high-level view of activity across your Dropzone tenant.

From the Dashboard, you can:

The Dashboard is typically the first place users land when logging in.


Investigations

The Investigations section is where alerts are analyzed and reviewed.

Here you can:

This area represents the core day-to-day workflow for SOC analysts.


Chat

The Chat interface provides a lightweight way to query integrated data sources using natural language.

Chat supports:

Chat is designed for fast, tactical lookups and enrichment—not full investigations—and complements the Investigations workflow.


Context Memory

Context Memory stores institutional knowledge that helps Dropzone understand your environment.

Context Memory captures:

This knowledge is applied automatically during investigations to improve accuracy and reduce manual research.


Team Admin Section

The Team Admin section is where user access and permissions are managed.

From Team Admin, administrators can:

This section is primarily used by Admins and security leaders.


Tenant Tree

The Tenant Tree allows users to navigate between multiple Dropzone tenants.

This is especially useful for:

The tenant tree makes it easy to switch context without logging out.


Fleet Dashboard

The Fleet Dashboard is a rollup view allowing you to see all your tenants in one place.

{% hint style="info" %} Note that you will only see the Tenant Tree and Fleet Dashboard if you have a multi-tenant setup of Dropzone. Ask your Sales or Customer Support team if you are unsure if this would provide value to your organization. {% endhint %}


Settings

The Settings area contains configuration and tuning controls for how Dropzone operates.

Settings is where more advanced functionality lives and is primarily used by Admins.

Settings Overview

Within Settings, you can configure:

Settings allows teams to tailor Dropzone to their environment, workflows, and risk tolerance.


How to Use This Folder

Each subfolder in Platform provides deeper documentation for that specific area of the UI, including:

If you’re new to Dropzone, start with:

  1. Dashboard
  2. Investigations
  3. Chat

Admins and advanced users should also review:


Summary

This section provides a map of the Dropzone experience. It explains what each part of the platform does and where to find it, helping users quickly orient themselves and understand how different workflows connect.

For detailed configuration or best practices, refer to the individual documents within each section.