May 14, 2024, 5:14 a.m. | /u/Professional-Dork26

cybersecurity www.reddit.com

We have a client who uses S1 vigilance team and I'm not sure whether or not to trust their analysis. They literally close the alerts with comment: "Threat Verified as False Positive" without ANY additional reasoning why???


I noticed Crowdstrike team will put very detailed notes when marking alerts as FP and their reasoning why.

alerts analysis can client crowdstrike cybersecurity false positive reasoning sentinelone team threat trust verified vigilance

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC