Microsoft Defender for Endpoint in Depth by Paul Huijbregts & Joe Anich & Justen Graves

Microsoft Defender for Endpoint in Depth by Paul Huijbregts & Joe Anich & Justen Graves

Author:Paul Huijbregts & Joe Anich & Justen Graves
Language: eng
Format: epub
Publisher: Packt
Published: 2023-11-15T00:00:00+00:00


Email notifications

Here, you can create email notifications for alerts or vulnerabilities. This is best used selectively; use cases can be for VIP machines or other high-value assets that you wish to draw more attention to. Some organizations monitor a Teams channel or shared mailbox around this, as an extra tier for their SOC.

Cold snack

Note that both alerting and email are not fully real-time notifications – meaning both firing an alert and an email of this alert arriving come with some delay. As such, you should consider that this may not be the best process to base your incident response on, but if you don’t have a SIEM and continuous monitoring, this may be a good alternative.



Download



Copyright Disclaimer:
This site does not store any files on its server. We only index and link to content provided by other sites. Please contact the content providers to delete copyright contents if any and email us, we'll remove relevant links or contents immediately.