Hi @YanivSh and @Alexandra_Roland , if I am using MS Sentinel as a SIEM;
even then do I have to purchase MDTI Threat intelligence API SDK?What
are the classic use cases when we need to enable the API SDK?
Hi @martinrojahn, MDTI is licensed per user. However, the API is
licensed per tenant. Feel free to learn more about MDTI's availability
with Copilot for Security to explore other options for getting MDTI:
https://aka.ms/mdti-copilot-guide
Hi, Thank you for the post. How do we add a whitelist or a watchlist for
the Threat Intelligence Incidents? It's catching a lot of the phishing
test domains and creating incidents about it, which is something we now
handle with automation rules, but it would be nice to be able to filter
them out at ...
Latest Comments