Note:This document applies to CB Response Server versions 6.4.0 and 6.4.1.
The CB Response User Guide is written for both the cloud and on-premises editions of CB Response. It provides information for administrators and for members of Security Operations Center (SOC) and Incident Response (IR) teams who are responsible for setting up and maintaining security for endpoints and networks, as well as assessing potential vulnerabilities and detecting advanced threats. This document includes information about the following topics:
Console user accounts and using the console
Sensors and sensor groups
Server certificate management
Process and binary search and analysis
Threat intelligence feeds
Watchlists and alerts
See the Comments section for a brief summary of changes to this document since the previous edition.