ThreatLocker® Detect: Your questions answered
ID: 57910d42-2b8c-50c4-9207-3eaa72522a8f
STIX ID: report--57910d42-2b8c-50c4-9207-3eaa72522a8f
Feed Name: ThreatLocker Blog
This Q&A blog outlines ThreatLocker Detect’s capabilities: community-shared and templated policies kept current with changing IOCs, Windows event log monitoring (including failed logins), instant response and isolation with controlled exceptions for investigations, and how it complements MDR by leveraging endpoint telemetry and customizable alert thresholds; it also confirms no additional agent is required since Detect is included in the existing ThreatLocker driver and can be enabled via the portal.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
