Apr 26 2024 02:16 AM
Hello toghether,
I hope somebody had the same Use case.
In Sentinel I like to run an Playbook which lock an User in the Azure (Cloud) and on Prem (AD), after an Analytic rule has triggerd / found suspicious activity.
Best regards
Kevin
Apr 26 2024 03:24 AM
Apr 26 2024 07:35 PM