Skip to content

Commit 28fb418

Browse files
revise plugins paragraph with review comments
1 parent c67cd8c commit 28fb418

File tree

1 file changed

+9
-5
lines changed

1 file changed

+9
-5
lines changed

articles/sentinel/sentinel-security-copilot.md

Lines changed: 9 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -45,18 +45,22 @@ For more information, see [Microsoft Sentinel in the Microsoft Defender portal](
4545

4646
Example: (to be added)
4747

48-
## System capabilities of Copilot in Microsoft Sentinel
48+
## Microsoft Sentinel plugins
4949

5050
Copilot in Microsoft Sentinel has the following capabilities in the standalone experience.
5151

52+
From the **Microsoft Sentinel (Preview)** plugin:
5253
- Get Microsoft Sentinel incidents
5354
- List Microsoft Sentinel workspaces
5455

55-
The Microsoft Sentinel plugin for KQL support generates and runs KQL hunting queries using Microsoft Sentinel data for most tables with good confidence.
56+
The **Natural language to KQL for Microsoft Sentinel (Preview)** plugin generates and runs KQL hunting queries using Microsoft Sentinel data.
5657

57-
- Natural language to KQL (NL2KQL) for Microsoft Sentinel
58+
>[!NOTE]
59+
> In the [unified Microsoft Defender portal](/defender-xdr/advanced-hunting-microsoft-defender), you can prompt Copilot for Security to generate advanced hunting queries for both Defender XDR and Microsoft Sentinel tables. Not all Microsoft Sentinel tables are currently supported, but support for these tables can be expected in the future.
5860
59-
To view these capabilities in Copilot, select the **Prompts** :::image type="icon" source="media/sentinel-security-copilot/prompts.png"::: icon in the prompt bar and select **See all system capabilities**. Scroll down to section for Microsoft Sentinel and Natural language to KQL.
61+
To view these capabilities in Copilot, select the **Prompts** :::image type="icon" source="media/sentinel-security-copilot/prompts.png"::: icon in the prompt bar and select **See all system capabilities**. Scroll down to the section for Microsoft Sentinel and Natural language to KQL.
62+
63+
For more information, see [Copilot for Security in advanced hunting](/defender-xdr/advanced-hunting-security-copilot).
6064

6165
### Enable the Microsoft Sentinel plugins in Copilot
6266

@@ -108,7 +112,7 @@ A useful way to summarize the prompts and responses so far.<br>
108112

109113
For more information on sample prompts, see [Rod Trent's Copilot for Security GitHub](https://github.com/rod-trent/Copilot-for-Security/blob/main/Prompts/Plugins/Sentinel.md).
110114

111-
### Related articles
115+
## Related articles
112116

113117
- [Microsoft Copilot in Microsoft Defender](/defender-xdr/security-copilot-in-microsoft-365-defender)
114118
- [Microsoft Defender XDR integration with Microsoft Sentinel](microsoft-365-defender-sentinel-integration.md)

0 commit comments

Comments
 (0)