Popular Articles

  1. Configure the Linux Environment to support installation of the Security Validation Actor

    Once you have the OS installed, configure the environment to support the installation of the Actor. This task includes the following items: Create or designate a system account to own the Validation Platform programs, data, and log files. Follow ...
  2. Outbound Integrations

    Using outbound integrations, pushes Entities and Issues to various security operations or notification tools. The following outbound integrations are supported. Ticketing Integrations Jira ServiceNow SIEM Integrations Chronicle S...
  3. Digital Threat Monitoring API

  4. Customer Support

    Contact support Technical support for Mandiant products is provided through the Google Cloud console using Cloud Customer Care offers . For more information, see the Mandiant section in the Google Cloud transition documentation...
  5. ASM Azure Integration

    This integration is not currently supported for Azure Government users. With Azure, retrieves public virtual machine (VM) instances, public DNS zones, and Blob Storage resources. For Blobs, checks to see if they are publicly accessible an...
  6. Digital Threat Monitoring FAQ

    Here at Mandiant, we know Cybersecurity threats never sleep. That’s why we designed the “always-on” threat monitoring and alerting capabilities of . With , you know about threats when we know about threats, giving you a leg-up in defending against...
  7. Work with Alerts

    continuously ingests documents from the deep and dark web to search for mentions of topics or entities that you designate in Monitors. When content in a collected document matches the conditions that you define in one of your Monitors, an Alert...
  8. Run Actions

    Actions are suspicious or malicious behaviors that are processed between or on Actors. Actions are designed to mimic attacker behaviors. Running Actions in your environment is a useful starting point, as they can help you understand how your env...
  9. Director Installation: Next Steps

    After the Director is installed and you've signed in for the first time, we recommend that you complete some initial configurations. This includes, but is not limited to, the following: Configuring DNS Settings Managing NTP Servers Settings ...
  10. Microsoft Sentinel and Defender ATP Integrations Admin Guide (Docker Version)

    This integration brings to Microsoft Sentinel and Defender ATP, highlighting indicators of compromise (IOCs) in your network to let you identify and explore those threats that matter most. Benefits of Docker The Azure integration meth...