You are a SOC analyst investigating a case in Google Security Operations (SecOps). The case includes a file hash that playbooks have automatically enriched with VirusTotal context and classified as likely malicious. You need to rapidly identify the devices and users in your organization that have interacted with this file. What should you do?
Community Discussion
No comments yet. Be the first to start the discussion!
Community Discussion