IMPORTANT ANNOUNCEMENT: On May 6, 2024, Carbon Black User eXchange (UeX) and Case Management will move to a new platform!
The Community will be in read-only mode starting April 19th, 7:00 AM PDT. Check out the blog post!
You will still be able to use the case portal to create and interact with your support cases until the transition, view more information here!

Managed Detection: What Alert Severities are Analyzed and Reported on?

Managed Detection: What Alert Severities are Analyzed and Reported on?

Environment

  • Managed Detection (Formerly CB ThreatSight)
  • Carbon Black Cloud Console: All Supported Versions
    • Endpoint Standard (Formerly CB Defense)
    • Enterprise EDR (Formerly CB ThreatHunter)

Question

What alert severities are analyzed and reported on by the CB ThreatSight team?

Answer

Alerts with a Severity Score of 5 or Greater

Additional Notes

  • Any severities from 4 and below are not a focus for the Managed Detection team.
  • Alerts generated by Enterprise EDR Watchlists are not available to the Managed Detection team.
  • If an alert is considered a false positive then this is not sent to the customer.

Related Content


Was this article helpful? Yes No
100% helpful (3/3)
Article Information
Author:
Creation Date:
‎09-09-2020
Views:
1889
Contributors