The "Socrates Tool - Run a RemoteScript on a device with SentinelOne" workflow template empowers businesses to enhance their threat hunting and remediation capabilities by automating the execution of remote scripts on devices. By analyzing script parameters and generating required values, this tool streamlines endpoint detection and response (EDR) processes, facilitating efficient case management and threat containment.
Use Cases
Case Management , Endpoint Detection and Response (EDR) , Threat Hunting
Workflow Breakdown
Socrates reads the list of available scripts and determines the appropriate parameters for each one.
A nested workflow is used to execute the remote script and wait for its output.
Vendors
Scripting, Utils, HTTP, SentinelOne, Torq Cases
Tips
Use template "Socrates Tool - List Remote Scripts in SentinelOne" to list available scripts from SentinelOne
