Skip to content

Commit a340f42

Browse files
authored
Merge branch 'main' into TABL-chrisda
2 parents a82605b + 4b8b772 commit a340f42

26 files changed

+387
-19
lines changed

defender-xdr/phishing-triage-agent.md

Lines changed: 368 additions & 18 deletions
Large diffs are not rendered by default.

defender-xdr/security-copilot-agents-defender.md

Lines changed: 19 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -41,6 +41,20 @@ The [Phishing Triage Agent](phishing-triage-agent.md) helps security operations
4141

4242
The agent is triggered when a user in your organization submits a phishing incident. The agent autonomously analyzes the submitted email to classify them as either phishing or not phishing based on its training and the context of the organization.
4343

44+
#### Permissions
45+
46+
The agent requires the following permissions to operate:
47+
48+
- Security data basics (read)
49+
- Email & collaboration content (read)
50+
- Email & collaboration metadata (read)
51+
- Security Copilot (read)
52+
- Alerts (manage)
53+
54+
#### Identity
55+
56+
The agent operates in the context of the identity you associate with it. Creating the agent's identity and assigning the appropriate permissions to the agent is the required before starting the setup.
57+
4458
#### Products
4559

4660
Tenants must have the following products enabled to use the agent:
@@ -54,4 +68,8 @@ The following plugins must be enabled in Security Copilot:
5468

5569
- Microsoft Defender XDR
5670
- Microsoft Threat Intelligence
57-
- Phishing Triage Agent
71+
- Phishing Triage Agent
72+
73+
#### Roles with access
74+
75+
The **Security Administrator** role is required to set up and manage the agent. Users with the same permissions as the Phishing Triage Agent can view the agent's activity and results, and provide feedback on the agent's classification verdict.
196 KB
Loading
40 KB
Loading
72.9 KB
Loading
30.2 KB
Loading
68.4 KB
Loading
8.3 KB
Loading
8.88 KB
Loading
145 KB
Loading

0 commit comments

Comments
 (0)