Automating Case Management, Escalation, and Reporting for Alert Triage

Automating Case Management, Escalation, and Reporting for Alert Triage

402 Lượt nghe
Automating Case Management, Escalation, and Reporting for Alert Triage
Join us for this webinar where Shaul Holtzman will show how Intezer communicates as an external SOC, to make your security operations more effective and efficient. See how you can quickly view your automatically triaged alerts, get weekly reports, and enable notifications to escalate the most serious alerts. 01:54 Intro from Shaul and outline of what he's going to show 03:12 Using Intezer like an extension of your security team 07:37 View of automatically analyzed and triaged security alerts 09:02 Example of "true positive" confirmed threat with Intezer's analysis results 10:23 Escalated alert notification from Intezer with context and analysis about a serious, unmitigated threat 12:23 What kind of threats get escalated by Intezer 19:24 Live examples: Connecting alert sources, viewing ingested alerts triaged and investigated by Intezer 37:10 Weekly report on automatically investigated, triaged, and remediated alerts by Intezer 40:26 Q&A with Shaul and Shannon (how Intezer analyzes threats; AI; memory forensics)