You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: learn-pr/wwl-sci/configure-manage-automation-microsoft-defender-for-endpoint/4-configure-automated-investigation-remediation-capabilities.yml
+1-1Lines changed: 1 addition & 1 deletion
Original file line number
Diff line number
Diff line change
@@ -6,7 +6,7 @@ metadata:
6
6
prefetch-feature-rollout: true
7
7
title: Configure automated investigation and remediation capabilities
8
8
description: "Configure automated investigation and remediation capabilities"
Copy file name to clipboardExpand all lines: learn-pr/wwl-sci/configure-manage-automation-microsoft-defender-for-endpoint/includes/4-configure-automated-investigation-remediation-capabilities.md
+9-5Lines changed: 9 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -2,13 +2,18 @@ To configure automated investigation and remediation, turn on the features, and
2
2
3
3
## **Turn on automated investigation and remediation**
4
4
5
-
As a global administrator or security administrator:
5
+
As a Global Administrator or Security Administrator:
6
6
7
7
1. In the navigation pane, select **Settings > Endpoints**.
8
8
9
9
1. In the General section, select **Advanced features**.
10
10
11
-
1. Turn on both Automated Investigation and Automatically resolve alerts.
11
+
1. Turn on **Automatically resolve alerts**.
12
+
13
+
> [!NOTE]
14
+
> The **Automated Investigation** option is gone from the advanced features setting in Defender for Endpoint. Automated investigation is now enabled by default.
15
+
16
+
1. Select the **Save preferences** button.
12
17
13
18
## Set up device groups
14
19
@@ -24,7 +29,7 @@ As a global administrator or security administrator:
24
29
25
30
- In the Devices section, use one or more conditions to identify and include devices.
26
31
27
-
- On the User access tab, select the Azure Active Directory groups that should have access to the device group you're creating.
32
+
- On the User access tab, select the Entra ID groups that should have access to the device group you're creating.
28
33
29
34
1. Select **Done** when you're finished setting up your device group.
30
35
@@ -74,5 +79,4 @@ Using the no automation option isn't recommended because it reduces the security
74
79
75
80
## Quickly configure remediation levels on device groups
76
81
77
-
Another way to set or update remediation levels on Device groups is in the Settings, General, Auto remediation page. The page provides a list of Device groups and the current remediation level for each. Select the row will allow you to adjust the remediation setting.
78
-
82
+
Another way to set or update remediation levels on Device groups is in the Settings, General, Auto remediation page. The page provides a list of Device groups and the current remediation level for each. Selecting the row allows you to adjust the remediation setting.
0 commit comments