Why Mandiant Advantage Automated Defense became mandatory!
Use Cases and Deployment Scope
It gives me an overview of all the critical activities in a single tab of my browser with the least or no complications. It saves me a lot of time and has a very less false positive percentage. So if it's being shown up as an alert, it is an alert.
Pros
- Less false positives
- Regular updates with the new threats
- Incidents are mostly well categorized in terms of severity
Cons
- A more detailed view about the incidents and what they were highlighted
- A false positive might take up to a week to get corrected at the backend and not be shown as an incident
- Switching between clients and their dashboards can be made more efficient
Return on Investment
- Reduced security engineering costs
- Reduced IT/SOC overhead costs
- Less time wasted pursuing false positives



