Get EDR alerts for applications and services that Carbon Black has started or stopped on a system. Enrich application information using VirusTotal, generate a ticket in Jira and record the details, then isolate a machine if deemed malicious.
Shaun Finn
How it works
Import this story to your tenant, from where you can adapt it to meet your unique needs.
Import