https://catalogartifact.azureedge.net/publicartifacts/silverfort.silverfort-scp-agent-fe6c572a-80dc-491c-974e-412163852c84/7d6a0e18-32de-42d8-95c8-831ea66a43d1_216.png

Silverfort Identity Threat Triage Agent

от Silverfort Ltd.

Free trial badge

Protect privileged and non-human identities across hybrid environments with Silverfort.

  • Agent tasks: Identity threat triage, entity analysis, authentication analysis, MFA activity monitoring, risky sign-in analysis, user risk posture assessment, endpoint behavior analysis, living-off-the-land technique detection, cross-telemetry correlation, anomaly detection, security event summarization, incident investigation support
    Agent workflow
    Input: User Principal Name (UPN), access to Microsoft Sentinel Data Lake tables (CommonSecurityLog, SigninLogs, AADRiskyUsers, DeviceProcessEvents), last-24-hours query constraint (TimeGenerated > ago(24h)), Sentinel Data Exploration MCP correlation capability
  • Output: MFA activity summary (approved, blocked, timed out, auto-response), sign-in success and failure summary, distinct IP address summary, user risk level and risk state summary, suspicious process execution summary (PowerShell, cmd, mshta, bitsadmin, rundll32, regsvr32), correlated identity-to-endpoint insights, anomaly highlights (MFA fatigue, repeated denials, unexpected approvals), concise triage summary report, investigation-ready findings without raw event logs.

Бърз преглед

https://catalogartifact.azureedge.net/publicartifacts/silverfort.silverfort-scp-agent-fe6c572a-80dc-491c-974e-412163852c84/501aa128-d976-4b96-8586-9f45cd2454b7_silverfortagent1.png
https://catalogartifact.azureedge.net/publicartifacts/silverfort.silverfort-scp-agent-fe6c572a-80dc-491c-974e-412163852c84/e1330ddc-d1cb-45ac-95d0-7f5b03352030_silverfortagent2.png
https://catalogartifact.azureedge.net/publicartifacts/silverfort.silverfort-scp-agent-fe6c572a-80dc-491c-974e-412163852c84/a6727090-6fac-4a1a-8815-611e29a6aeec_silverfortagent3.png