To effectively prepare EDRF to detect threats, you can configure security intelligence and behavioral monitoring. The primary methods involve creating custom Indicator of Compromise (IOC) rules, setting alert thresholds, and monitoring for malicious activity.
Follow these steps to configure potential threats.
Endpoint Detection and Response with Forensics (EDRF) > Detect and handle potential threats with EDRF > Configure EDRF to detect potential threats > Monitoring threats