A customer's Security Operations Center (SOC) team wants to receive alerts from Prisma Cloud via email once a day about all policies that have a violation, rather than receiving an alert every time a new violation occurs.
Which alert rule configuration meets this requirement?
To receive daily email alerts for all policy violations, the SOC team should configure an alert rule that encompasses all policies and sets the notification frequency to once per day. This can be achieved by:
Navigating to the ''Policies'' tab within the alert rule configuration and selecting ''All Policies'' to ensure that the rule applies to every policy.
Moving to the ''Set Alert Notifications'' tab and choosing the ''Email'' notification method.
Setting the notification to ''Recurring'' with a frequency of every 1 day.
Enabling the email notification by specifying the recipient's email address.
This configuration ensures that the SOC team will receive a consolidated email once a day that includes information on all policies that have been violated, rather than receiving multiple alerts throughout the day as new violations occur. It allows the team to review the compliance status efficiently and prioritize their response accordingly.
Mary
1 months agoAlaine
2 days agoLucia
4 days agoCherry
22 days agoDetra
1 months agoTawanna
1 months agoCarmelina
13 days agoKyoko
14 days agoAn
22 days agoMari
1 months agoJesusita
2 months agoSolange
2 months agoHildred
4 days agoJerry
7 days agoLaticia
10 days agoNikita
15 days agoMarge
2 months agoVirgina
2 months ago