Skip to content

Commit 9cc10cd

Browse files
Merge pull request #258773 from ElazarK/WI182998-advance-hunting
removed advanced hunting
2 parents cab8d5d + fc705b2 commit 9cc10cd

File tree

1 file changed

+1
-2
lines changed

1 file changed

+1
-2
lines changed

articles/defender-for-cloud/concept-integration-365.md

Lines changed: 1 addition & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22
title: Alerts and incidents in Microsoft 365 Defender
33
description: Learn about the benefits of receiving Microsoft Defender for Cloud's alerts in Microsoft 365 Defender
44
ms.topic: conceptual
5-
ms.date: 11/02/2023
5+
ms.date: 11/16/2023
66
---
77

88
# Alerts and incidents in Microsoft 365 Defender
@@ -25,7 +25,6 @@ The following table describes the detection and investigation experience in Micr
2525
| Alerts | All Defender for Cloud alerts, including multicloud, internal and external providers’ alerts, are integrated to Microsoft 365 Defender. Defenders for Cloud alerts show on the Microsoft 365 Defender [alert queue](/microsoft-365/security/defender-endpoint/alerts-queue-endpoint-detection-response?view=o365-worldwide). <br> <br> The `cloud resource` asset shows up in the Asset tab of an alert. Resources are clearly identified as an Azure, Amazon, or a Google Cloud resource. <br> <br> Defenders for Cloud alerts are automatically be associated with a tenant. <br> <br> There are no duplications of alerts from other Defender workloads.|
2626
| Alert and incident correlation | Alerts and incidents are automatically correlated, providing robust context to security operations teams to understand the complete attack story in their cloud environment. |
2727
| Threat detection | Accurate matching of virtual entities to device entities to ensure precision and effective threat detection. |
28-
| Advanced hunting | |
2928
| Unified API | Defender for Cloud alerts and incidents are now included in [Microsoft 365 Defender’s public API](/microsoft-365/security/defender/api-overview?view=o365-worldwide), allowing customers to export their security alerts data into other systems using one API. |
3029

3130
Learn more about [handling alerts in Microsoft 365 Defender](/microsoft-365/security/defender/microsoft-365-security-center-defender-cloud?view=o365-worldwide).

0 commit comments

Comments
 (0)