IP and Country Lookup
Overview
IP and country lookup provides location context for authentication and activity events.
What this feature does
It helps identify where a login or action may have originated, using IP-based location information where available.
Why it is useful
- It supports suspicious activity investigations.
- It helps identify repeated access from the same source.
- It provides context for security dashboards and reports.
Who should read this?
RISE Admin, Security Officer, Support Engineer.
Where to find it
Auth Log, Activity Log, Security Dashboard, and related event detail views.
How to use it
- Open Auth Log or Activity Log.
- Review the IP address and country fields.
- Compare the source with expected user behavior.
- Use filters to find other events from the same IP.
Example workflow
A failed login attempt appears from an unfamiliar country. The admin filters other events from the same IP to see if it targeted multiple accounts.
Screenshot
Screenshot required
Capture from: Rise Audit Pro → Auth Log → IP and country columns
Capture from: Rise Audit Pro → Auth Log → IP and country columns
Common mistakes
- Assuming IP location is always accurate.
- Ignoring privacy obligations around IP data.
- Sharing IP data publicly or in unsecured exports.
Related articles
- Understanding IP, Device, and Country
- New Country Login Detection
- Sensitive Data and Privacy Notes

