-
Notifications
You must be signed in to change notification settings - Fork 73
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Microsoft Sentinel collector not working #1685
Microsoft Sentinel collector not working #1685
Comments
Need to re align for the Detection & Prevention expectations:
Logs on Sentinel
B. Scope the incident. Find related devices, network addresses, and files in the incident graph. C. Contain and mitigate the breach. Stop suspicious processes, isolate affected devices, decommission compromised accounts, or reset passwords, block IP addresses and URLs, and install security updates. D. Contact your incident response team, or contact Microsoft support for investigation and remediation services. Code
|
Don't forget to build a check list on what to implement to be a valid collector -> usefull for Crowdstrike and the others one |
Description
Microsoft Sentinel collector not working, we don' have have the right prevention detection on Sentinel
The text was updated successfully, but these errors were encountered: