Managing My Account Settings

You can view and update your account settings, including your email, name, and phone number on the My Account tab. Additionally, you can set a default landing page and manage the email notifications that you receive from ThreatStream.

You can also reference important information, including your Account Type and the fields detailed below.

Field Description
Shared Secret for MFA

Static code used for setting up multi-factor authentication on the Google Authenticator application the first time you login to ThreatStream using MFA.

To view the scannable QR code that serves the same purpose, click Show QRCode. This field is only displayed if MFA is enabled for your organization.

API Key

Key used for authentication when you access ThreatStream from outside the user interface, such as through API calls or ThreatStream Integrator.

Click Reveal to show your API key.

Note: Read Only users can view their API Key only if the Show API Key for Users permission is enabled for them on the User Admin tab. Refer to Managing Organization Users for details.
Last API Check-in Date Time of your most recent ThreatStream login.

To set a default landing page:

  1. In the bottom-left corner of the side navigation panel, click > ThreatStream and then click My Account.
  2. Enter your current password in the corresponding field.
  3. Select the landing page of the application of your interest. The following default landing pages are available for selection: Platform Dashboard, ThreatStream, Security Analytics, and Search.
    Note: Active subscription to Anomali Security Analytics is required to set Security Analytics as your default landing page.
  4. Click Save Changes.

After saving your changes, you are logged out of ThreatStream. The next time you log in to your ThreatStream account, the selected landing page will be displayed.

To update your contact information:

  1. In the bottom-left corner of the side navigation panel, click > ThreatStream and then click My Account.
  2. Enter your current password in the corresponding field.
  3. Make required changes to the Email, Name, or Phone fields.
  4. Click Save Changes.

After saving your changes, you are logged out of ThreatStream. Changes to your contact information are reflected on the My Account tab the next time you login to ThreatStream.

Receiving Notifications from ThreatStream

From the My Account tab in ThreatStream Settings, ThreatStream enables you to customize the email and in-app notifications you receive. These notifications keep you up to date with the latest threat intelligence impacting your organization. Some notifications are only available to Org Admins.

Refer to the table below for specifics on available notifications that you can enable.

Email Notification Description Available to
Threat Models
Threat Model Creation Sends immediate email or in app notifications every time a threat model entity is created. All users
Threat Model Update Sends immediate email or in app notifications every time a threat model entity is updated. All users
Threat Model Daily Digest Sends daily email summaries of threat model entities created during the day. All users
Trusted Circles
Trusted Circles Sends immediate email notifications when organizations join or leave your trusted circles. All users
Rules
Rules Matches

Sends immediate email notifications when keywords that your organization has configured in rules matches new intelligence. See Rules for more information.

All users
Rules Matches Digest

Sends an hourly email summary of all keywords configured in rules that have matched new intelligence in the last hour. See Rules for more information.

All users
Disabled Rule Notifications Sends immediate email notifications when rules are disabled. See Re-Enabling Disabled Rules for details on disabled rules.
By default, the setting is disabled.
Org Admins
Imports
Import Session Creation Sends immediate email notifications when intelligence is imported. Users with Approve Intel privileges only
Import Session Hourly Digest Sends hourly email summaries of all imported intelligence from the past hour. Users with Approve Intel privileges only
Investigations
When any investigation is created

Sends immediate email or in app notifications when a new investigation is created in your organization. Email notifications are sent to all users who have subscribed to receive email notifications except for the user who took the action.

All users
When any task is created Sends immediate email or in app notifications when investigation tasks are created. Email notifications are sent to all users who have subscribed to receive email notifications except for the user who took the action. All users
When an investigation is assigned to me or my workgroup Sends immediate email or in app notifications when an investigation is assigned to you. All users
When a task is assigned to me or my workgroup Sends immediate email or in app notifications when an investigation task is assigned to you. All users
When an investigation is updated by another user Sends immediate email or in app notifications when a user in your organization updates an investigation. All users
When a task is updated by another user Sends immediate email or in app notifications when investigation tasks are updated by users in your organization. All users
APP Store
When a feed has errors Sends immediate email or in app notifications when a feed is down. Org Admins
When a feed has no data Sends immediate email or in app notifications when a feed has no data. Org Admins

To manage your email notifications:

  1. In the bottom-left corner of the side navigation panel, click > ThreatStream and then click My Account.
  2. Scroll down to the Notifications section.

  3. Locate the email notification to which you want to subscribe or unsubscribe.

  4. To subscribe, select the notification interval corresponding to the notification from the drop down menu.

    To unsubscribe, select Unsubscribe from the drop-down list.

    Updates are saved automatically.

To manage in-app notifications:

  1. In the bottom-left corner of the side navigation panel, click > ThreatStream and then click My Account.
  2. Scroll down to the Notifications section.

  3. Locate the in-app notification to which you want to subscribe or unsubscribe.

  4. To subscribe, move the slider to the right position. The slider turns green upon subscription.

    To unsubscribe, move the slider to the left position. The slider turns gray upon unsubscribing.

    Note: If a slider is not displayed in the In App column, in-app notifications are not available for the event.

    Updates are saved automatically.

Note: The in-app notifications listed on the My Account page represent only the notifications you can customize. See Receiving In-App Notifications From ThreatStream for a complete list of in app notifications and information on managing your subscriptions.