Onboarding
1 Getting Started
2 Integrate EDR Agent
3 Integrate Data Sources
4 Using XDR
5 Steady State
4.1 Investigations
4.2 Searching & Reporting
4.3 Custom Rules & Automation
4.4 Proactive Response
4.5 CTU™ Countermeasures & Threat Intelligence
4.6 Tools
Investigations ⫘
Interacting with Investigations ⫘
Investigation and Alert Status ⫘
Additional Resources ⫘
Regardless of who creates an investigation, it is important you understand how investigations work and how to communicate with Secureworks during the investigation. Access the following resources to learn more:
- Investigations Overview
- Start or Add to an Investigation
- View and Edit Investigations
- Hand Off an Investigation
- Add Files to an Investigation
- Investigation Comments
- Close an Investigation
- Add Search Queries to an Investigation
Tip
Avoid an investigation escalation by ensuring you know how to properly assign investigations and tag Secureworks in comments.