Forum Discussion

manulargo's avatar
manulargo
Copper Contributor
Nov 01, 2023

Defender endpoint - Advanced vulnerability notifications

Salutations, 

 

we/I deployed defender endpoint P2 for several customers and enabled notifications for vulnerabilities.

What is happening now:

New Browser vulnerability. Notifications fire. Updates are deployed on devices. 

 

What I would like to configure and happen:

- send me a notification when vulnerability with [cve threshold] persists on device for [number of days after initial finding]

 

Is this possible with the current version of defender endpoint P2?

 

Thanks for reading! 

1 Reply

  • Hey manulargo 

     

    In order to do this you could leverage Defender for Cloud and an Azure Logic App to send you an email

     

    Within the Defender 365 Portal, you could create a custom alert

     

    https://learn.microsoft.com/en-us/microsoft-365/security/defender/custom-detection-rules?view=o365-worldwide

     

     

Resources