Investigate is built with the Skills gap in mind; you do the threat hunting with No-Code KQL, while Harvey works in the background.
Investigate writes the KQL code for you so that you can focus on threat hunting. After all, that is the main reason for using automation.
Investigate is located in all areas where you do your threat hunting, incidents, devices, firewalls and Tickets.
The general rule is that if you are threat hunting in the SecQube portal, if you see orange text or numbers, click it, and Harvey will write the KQL to drill in.
SecQube Investigate empowers analysts with a swift and intuitive platform, enabling them to tackle complex threat hunting with confidence and ease.