{
"id": "abc-123",
"title": "Failed Login Attempt",
"yaml_content": "title: Failed Login Attempt\nstatus: test\nlogsource:\n product: windows\n service: security\ndetection:\n selection:\n EventID: 4625\n condition: selection\nlevel: medium\ntags:\n - attack.credential_access\n - attack.t1110",
"status": "deployed",
"severity": "medium",
"tags": ["attack.credential_access", "attack.t1110"],
"source": "custom",
"threshold_enabled": false,
"threshold_count": null,
"threshold_window_minutes": null,
"threshold_group_by": null,
"snooze_until": null,
"snooze_indefinite": false,
"webhook_enabled": true,
"jira_enabled": true,
"created_at": "2024-01-10T10:00:00Z",
"updated_at": "2024-01-15T14:32:17Z",
"created_by": "admin@example.com",
"updated_by": "analyst@example.com",
"version": 3,
"alert_count": 42
}