Forum Discussion
Gig McClain
May 18, 2021Copper Contributor
Correlated Events
Just watched the M365 Defedner for Endpoint webinar a few minutes ago. We don't use Sentinel. We have M365 Identity, Endpoint, & MCAS all turned on. Will we automatically see correlated incidents...
marysia_k
Microsoft
Jun 01, 2021Hi Gig, M365 Defender for Endpoint will automatically correlate alerts from all of these sources into Incidents. There is no need for any manual work or Sentinel. Hope this helps!