In Configuration > Settings > Email Templates, administrators can configure the format and customize the content of the notifications sent by iManage Threat Manager. These are application-wide settings and can't be modified at the rule level.
In this section:
Notification settings
The Notification Settings section lets you configure the link to iManage Threat Manager and the logo shown for all notifications.
Threat Manager Host: Mandatory. Provides the link in the notification message that redirects to the iManage Threat Manager application.
Logo Image: You can add a custom Logo Image. The size specifications for the image are: 250 px (width) by 50 px (height). If the image is larger than the specifications, then it’s proportionally resized to fit the specified size.
Task: Configure notification settings
In the Threat Manager Host field, select Suggest. The system will provide the path to Threat Manager for you.
To add a custom logo, select Upload Logo to browse, select, and upload the image to be used as the logo in the notifications. The selected image is displayed in the Logo Image area.
Templates
You can modify email templates to specify the sending account, and customize the text for the email notifications that iManage Threat Manager sends.
The following templates are available.
Alert Notifications template
This template applies to all notifications sent by iManage Threat Manager, except for notifications sent to users who have triggered Detect and Protect actions. For Behavior Analytics alert notifications, the email includes an Open Alert link that opens Alert Details.
For example, this template is used for notifications to:
“Users to be notified” across all types of rules.
Users who have triggered behavior alert rules.
Task: Customize the Alert Notifications template
In the From field, enter the sending account of the notification message.
In the Subject field, enter the value to be prepended, together with a spaced dash, to the subject of any Threat Manager notification messages (excluding those advising a user of Detect and Protect actions that they've triggered).
For example, enteringThreat Manager Notificationin this field will cause the subject of all notifications to displayThreat Manager Notification - <Notification type>where<Notification type>is the subject for that type of notification.
The default value isiManage Threat Manager.In the Top Text field, enter text to display directly below the subject (in the header area). The default text is
Please review the information below. You can overwrite or modify this as required.In the Bottom Text field, enter the bottom text for the notification message. This text appears below the table that displays the alert.
The Disclaimer Text field is pre-populated with boilerplate disclaimer text, which you can overwrite or modify as required.
Select Save to save the settings defined.
If you need to reset or discard changes to settings entered for the notifications, select Reset. This also resets all template text.
Notify User template
This email template is used when notifying a user who has triggered a Detect and Protect rule with action type “Warn the User”.
Task: Customize the Notify User template
In the From field, enter the sending account of the notification message.
In the Subject field, enter the subject line of the email. The default text is
iManage Threat Manager - Concerning Activity Detected. Overwrite or modify this as required.In the Top Text field, enter text to display below the subject (in the header area). Overwrite or modify the default text as required.
Enable Include Criteria to provide a summary of the Detect and Protect rule criteria for the rule breached. You can enable this option by moving the slider to the right.
In the Bottom Text field, enter the text that appears below the table that displays the alert. Overwrite or modify the default text as required.
The Disclaimer Text is pre-populated with boilerplate disclaimer text, which you can overwrite or modify as required.
Select Save to save the settings defined.
If you need to reset or discard changes to settings entered for the notifications, select Reset. This also resets all template text.
Disable Account template
This email template is used when notifying a user who has triggered a Detect and Protect rule with action type “Disable account”.
Task: Customize the Disable Account template
In the From field, enter the sending account of the notification message.
In the Subject field, enter the subject line of the email. The default text is
iManage Threat Manager Warning - Account Disabled. Overwrite or modify this as required.In the Top Text field, enter text to display directly below the subject (in the header area). The default text is
Please review the information below. Overwrite or modify this as required.Enable Include Criteria to provide a summary of the Detect and Protect rule criteria for the rule that was breached. You can enable this option by moving the slider to the right.
In the Bottom Text field, enter the text that appears below the table that displays the alert. Overwrite or modify the default text as required.
The Disclaimer Text field is pre-populated with boilerplate disclaimer text, which you can overwrite or modify as required.
Select Save to save the settings defined.
If you need to reset or discard changes to settings entered for the notifications, select Reset. This also resets all template text.
Enable Account
When a user who was disabled in the Threat Manager application is re-enabled through the Threat Manager application, the system automatically sends two email notifications.
The first email is sent to the re-enabled user and informs them that their account has been re-enabled.
The second email is sent to all recipients on the Detect and Protect rule’s Notification List, informing them which user was re-enabled and who performed the action.
In Configuration > Settings > Email Templates, you can customize the email that is sent to users.
Task: Customize the Enable Account template
In the From field, enter the sending account of the notification message.
In the Subject field, enter the subject line of the email. The default text is
iManage Threat Manager Warning - Your iManage account has been enabled. Overwrite or modify this as required.In the Top Text field, enter text to display directly below the subject (in the header area). The default text is
Please review the information below. Overwrite or modify this as required.Enable Include Criteria to provide a summary of the Detect and Protect rule criteria for the rule breached, for the user's awareness. You can enable this option by moving the slider to the right.
In the Bottom Text field, enter the text that appears below the table that displays the alert. The default text is
Please contact the compliance teams with any questions or concerns. Overwrite or modify this as required.The Disclaimer Text field is pre-populated with boilerplate disclaimer text, which you can overwrite or modify as required.
Select Save to save the settings defined.
If you need to reset or discard changes to settings entered for the notifications, select Reset. This also resets all template text.