Plugins overview Microsoft Security Copilot

 






Introduction

Security Copilot supports a number of non-Microsoft plugins and has a large number of default plugins. Adding or developing own plugin is another way to increase Security Copilot's functionality. Developers and users can create plugins on the Security Copilot platform that can be used to carry out specific tasks. 

Preinstalled Plugins

Learn how to use the plugins safely so that when Security Copilot is reacting to the commands, it can be used to gather information or take action. Any plugin can be used according to the services a company use. 

Click on the plugin button to see which plugins Security Copilot can be used. Check for the plugins that are toggled on. Security Copilot can automatically use the available plugins without any extra setup. 

Microsoft Plugins

Security Copilot grants access to additional Microsoft services that are already available for a company via the on-behalf-of authentication flow. Some of them are as follows:
  1. Azure AI Search (Preview)
  2. Azure Firewall (Preview)
  3. Azure Web Application Firewall (Preview)
  4. Microsoft Defender External Attack Surface Management
  5. Microsoft Defender Threat Intelligence
  6. Microsoft Defender XDR
  7. Microsoft Entra
  8. Microsoft Intune
  9. Microsoft Purview
  10. Microsoft Sentinel (Preview)
  11. Natural language to KQL for Microsoft Defender XDR 
  12. Natural language to KQL for Microsoft Sentinel (Preview)

Non-Microsoft Plugins

Some of them are as follows:
  • AbuseIPDB (Preview)- Report and identify IP addresses that have been associated with malicious activity online.

  • Aviatrix (Preview)- Allows customers to use Microsoft Defender Threat Intelligence with Aviatrix to gain insight into new threats and mitigate them through firewall policy enforcement. 

  • CheckPhish (Preview)- Analyze URLs for potential phishing threats, tech support scams, cryptojacking, and other security risks.

  • Cyware Respond- Gain context and enrichments to analyze, prioritize, and remediate.

  • Darktrace- Proactively detect, investigate, and respond to threats across a digital ecosystem.

Custom Plugins

New plugins can be created to extend what Copilot can do.

Conclusion

Here, we discuss about various types of plugins that can be available for use. 

































Comments

Popular posts from this blog

Deployment (Part 3)

Deployment (Part 2)

Deployment (Part 1)