Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • Here a set of Events is to be set to get notified for. Those events are categorized as Agent, Company, Asset, Ports, Remediation, Vulnerability, Azureerror, AD Audit, Azure AD Audit, and Unquoted Service Path. Every category will have certain events which that can be set.

  • Enter the Event Name and select the category and an Event/s as required. In the image below, selected companies can be seen with the details such as Existing Company Name, Company Name, and Mapped Date.

...

  • For Remediation notifications via email, MS Teams, Slack, OR PSA integrations, any of the below can be selected. Any of the below is used for grouping action items listed under the remediation plan.

    To list all the remediations for a company into one ticket OR one email or one message.

    • Remediation by Company

    OR

    To list all the remediations for an asset into one ticket OR one email or one message.

    • Remediation by Assets

    OR

    To list all the remediations for a product into one ticket OR one email or one message.

    • Remediation by Product

    OR

    To list all the remediations for a product but grouped by a fix into one ticket OR one email or one message.

    • Remediation By Product(grouped by a fix)

    OR

    To create a ticket OR an email or a message for every remediation

    • Remediation By Asset, Company And Product.

...

  • To Enable Tickets for Remediations

...

  • with EPSS, one of the

...

  • Remediation plan need to be selected from the Remediation

...

  • Group.

  • Enable Tickets for Critical and High severity Remediations

  • Enable Tickets for Remediations with EPSS greater than 0.95

  • Enable Tickets for Remediations with EPSS greater than 0.90

  • Enable Tickets for Remediations with EPSS greater than 0.85

  • Enable Tickets for Remediations with EPSS greater than 0.50

Based on the above selection of any one criteria, the remediation items will be grouped.

...

  • For the Vulnerability & Azure error category, the below-listed alert, and selection is allowed.

...

  • Image Added
  • For the AD Audit category, the below-listed alerts are available and selection of all or any is allowed. (Make sure to select the needed as it will create tickets based on the events)

...

  • For the Azure AD Audit& Unquoted service path, the below-listed alert alerts and selections are allowed.

...

  • For the Reports, the below-listed alerts and selections are allowed.

...

  • Once the above details are selected, click on Save.

...

  • Image Added
  • There is an option to Edit, Delete, and set as default for the Alert Rules using the Action column. The listed Alert Rule can be edited and deleted if needed.

...

  • Once the event is set to default, under the Is Default column, the status Yes can be seen.

...

  • There is an option to Edit, Delete, and Set as default under the Integration Rules using the Action column. The listed Integration Rule can be edited and deleted if needed.

...