Copilot for Security - Microsoft Integration - Tanium Tech Talks #87

Поділитися
Вставка
  • Опубліковано 19 лип 2024
  • See Microsoft's Copilot for Security powered by Tanium's real-time data on today's Tanium Tech Talk.
    Think about it. AI needs data. Tanium is your real-time data source for enterprise IT. Now imagine interacting with that data from Microsoft's Copilot for Security for real-time investigation and response.
    -Accelerate investigations with real-time data for SOC teams
    -SBOM, hashes, process details, script analysis, guidance, and more
    -Tanium skills backing the natural language interface
    -Pivot to Tanium for deeper data and remediation
    -Quick, simple integration setup
    RESOURCES
    Docs
    help.tanium.com/bundle/ug_con...
    Microsoft Partner Spotlight
    www.tanium.com/partners/micro...
    Release blog post
    www.tanium.com/blog/microsoft...
    Microsoft Security Insights show with Rod Trent
    • Microsoft Security Ins...
    Rod Trent's Tanium prompt list
    github.com/rod-trent/Copilot-...
    Microsoft Integrations Overview
    • Microsoft Integrations...
    CHAPTERS
    00:00 Intro
    01:10 Meet Mike
    01:32 Copilot for Security partner
    02:46 Tanium's integration
    03:54 Early feedback
    05:04 DEMO: Asking prompt about a CVE
    07:30 DEMO: Pivot to Tanium
    08:49 New SOC analyst benefit
    09:40 Skills and prompts
    10:40 DEMO: openssl SBOM example
    13:10 DEMO: threat investigation guidance
    15:25 DEMO: process details and hashes
    16:35 AI still needs SOC expertise
    17:10 DEMO: script analysis
    18:42 Can we trust the data?
    20:00 DEMO: integration setup
    22:41 What about RBAC?
    23:54 Which Tanium modules do I need?
    25:15 Resources
    26:00 Converge Florida
    26:28 Microsoft Security Insights show
    26:59 Wrap up
    #microsoftsecurity #copilot #security #microsoft #plugin #aem #secops #informationsecurity #informationtechnology
  • Наука та технологія

КОМЕНТАРІ •