Forum Discussion

stianhoydal's avatar
stianhoydal
Brass Contributor
Jan 04, 2022
Solved

No option to tune analytics rule with Microsoft 365 Defender connector

Greetings, i have been working with a few different customers and when trying to configure the Defender for O365 alert "Email messages containing malicious URL removed after delivery", however there ...
  • Thijs Lecomte's avatar
    Jan 04, 2022
    You can't update those rules as it uses an integrated bi-directional sync engine.

    The best way is to use automation rules to update these incidents based on certain conditions.

Resources