.. _automate-security-management-defender-for-endpoint-overview:

Automate - Security Management - Defender for Endpoint Overview
---------------------------------------------------------------





Defender for Endpoint overview dashboard - stats and summary data




.. raw:: latex


   \sphinxstylestrong{Counters}

   \begin{itemize}
   
    
    \item {\hyperref[\detokenize{}]{\sphinxcrossref{\DUrole{std,std-ref}{Alerts}}}}
    
    
    \item {\hyperref[\detokenize{}]{\sphinxcrossref{\DUrole{std,std-ref}{Alerts}}}}
    
    
    \item {\hyperref[\detokenize{}]{\sphinxcrossref{\DUrole{std,std-ref}{High Severity Alerts}}}}
    
    
    \item {\hyperref[\detokenize{}]{\sphinxcrossref{\DUrole{std,std-ref}{Total Devices}}}}
    
    
    \item {\hyperref[\detokenize{}]{\sphinxcrossref{\DUrole{std,std-ref}{Unhealthy Devices}}}}
    
    
    \item {\hyperref[\detokenize{}]{\sphinxcrossref{\DUrole{std,std-ref}{High Risk Devices}}}}
       
   \end{itemize}


  



   \sphinxstylestrong{Charts}
   \begin{itemize}
   
   
   \item \sphinxstylestrong{ Secure Score (perc) Trend - Daily }
   \begin{itemize}
   \item \sphinxstylestrong{Description:} Trend of Daily Secure Score rating over time
   \item \sphinxstylestrong{Type:} chart-line 
    \item \sphinxstylestrong{Resource:} Defender Secure Score
    
    \item \sphinxstylestrong{Condition:} \begin{verbatim}\end{verbatim}
    
    \end{itemize}
   
   \item \sphinxstylestrong{ Alerts Trend - Daily }
   \begin{itemize}
   \item \sphinxstylestrong{Description:} Daily Trend of alert counts by type over time
   \item \sphinxstylestrong{Type:} chart-line 
    \item \sphinxstylestrong{Resource:} Defender Alerts
    
    \end{itemize}
   
   \item \sphinxstylestrong{ Alert Severity }
   \begin{itemize}
   \item \sphinxstylestrong{Description:} chart showing count of alerts by severity
   \item \sphinxstylestrong{Type:} chart-pie 
    \item \sphinxstylestrong{Resource:} Defender Alerts
    
    \end{itemize}
   
   \item \sphinxstylestrong{ Device Platforms }
   \begin{itemize}
   \item \sphinxstylestrong{Description:} Count of devices by platform
   \item \sphinxstylestrong{Type:} chart-pie 
    \item \sphinxstylestrong{Resource:} Defender Devices
    
    \end{itemize}
   
   \item \sphinxstylestrong{ Device Groups }
   \begin{itemize}
   \item \sphinxstylestrong{Description:} Count of devices by device group
   \item \sphinxstylestrong{Type:} chart-pie 
    \item \sphinxstylestrong{Resource:} Defender Devices
    
    \end{itemize}
   
   \item \sphinxstylestrong{ Device counts by Agency }
   \begin{itemize}
   \item \sphinxstylestrong{Description:} chart showing device count by agency
   \item \sphinxstylestrong{Type:} chart-pie 
    \item \sphinxstylestrong{Resource:} Defender Devices
    
    \item \sphinxstylestrong{Condition:} \begin{verbatim}{{ macro.ALLOW_CUSTOMER_HIERARCHY_TYPE }}\end{verbatim}
    
    \end{itemize}
   
   \item \sphinxstylestrong{ Alerts by Agency }
   \begin{itemize}
   \item \sphinxstylestrong{Description:} chart showing device count by agency
   \item \sphinxstylestrong{Type:} chart-pie 
    \item \sphinxstylestrong{Resource:} Defender Alerts
    
    \item \sphinxstylestrong{Condition:} \begin{verbatim}{{ macro.ALLOW_CUSTOMER_HIERARCHY_TYPE }}\end{verbatim}
    
    \end{itemize}  
 
   \end{itemize}






   \sphinxstylestrong{Tables}
   \begin{itemize}
     
     
     \item \sphinxstylestrong{ Alerts } 
     \begin{itemize}
     \item \sphinxstylestrong{Resource:} Defender Alerts
     \item \sphinxstylestrong{drilldown-modelType:} N/A
     
     
      \item \sphinxstylestrong{Fields:} Alert Name, Devicetags, Severity, Status, Classification, Determination, Category, Device DNS Name, User Account Name, Detection Source, Product Name, Policy Name, Policy Rule Name, Assigned To, Created, Last Updated
      
      

      \end{itemize}
     
     \item \sphinxstylestrong{ Devices } 
     \begin{itemize}
     \item \sphinxstylestrong{Resource:} Defender Devices
     \item \sphinxstylestrong{drilldown-modelType:} N/A
     
     
      \item \sphinxstylestrong{Fields:} Name, Last Seen, First Seen, OS Platform, Version, Last IP Address, Health Status, RBAC Group Name, Risk Score, Exposure Level, Machine Tags
      
      

      \end{itemize}   
   \end{itemize}

  


   

.. raw:: html


   <h3>Counters</h3>

   <table class="panel-table"><tbody>
     <tr>
     <th style="text-align:center">COUNTERS</th>
     </tr>
  
     <tr>
     
     
     <td>
     <p style="border-radius: 6px;background-color: #e1dbdb;">
     
     <i class="material-icons">looks_6</i>
     
     
     <a href="#">Alerts</a>
     
     
     
     
      <br>Defender Alerts
      
      </p>
     </td>
     
     <td>
     <p style="border-radius: 6px;background-color: #e1dbdb;">
     
     <i class="material-icons">looks_6</i>
     
     
     <a href="#">Alerts</a>
     
     
     
     
      <br>Defender Alerts
      
      </p>
     </td>
     
     <td>
     <p style="border-radius: 6px;background-color: #e1dbdb;">
     
     <i class="material-icons">looks_6</i>
     
     
     <a href="#">High Severity Alerts</a>
     
     
     
     
      <br>Defender Alerts
      
      </p>
     </td>
     
     <td>
     <p style="border-radius: 6px;background-color: #e1dbdb;">
     
     <i class="material-icons">looks_6</i>
     
     
     <a href="#">Total Devices</a>
     
     
     
     
     <br>Total Devices
     
      <br>Defender Devices
      
      </p>
     </td>
     
     <td>
     <p style="border-radius: 6px;background-color: #e1dbdb;">
     
     <i class="material-icons">looks_6</i>
     
     
     <a href="#">Unhealthy Devices</a>
     
     
     
     
     <br>Unhealthy Devices
     
      <br>Defender Devices
      
      </p>
     </td>
     
     <td>
     <p style="border-radius: 6px;background-color: #e1dbdb;">
     
     <i class="material-icons">looks_6</i>
     
     
     <a href="#">High Risk Devices</a>
     
     
     
     
     <br>High Risk Devices
     
      <br>Defender Devices
      
      </p>
     </td>   
     </tr>
   </tbody></table>

  
  


  



.. raw:: html


   <h3>Charts</h3>

   <table class="panel-table">
     <thead>
     <tr>
     <th colspan=4  style="text-align:center">CHARTS</th>
     </tr>
     <tr>
     <th>Title</th><th>Type</th><th>Resource</th><th>Description</th>
     </tr>
     </thead>
     <tbody>
     <tr>
     
     
     <tr> 
          <td>Secure Score (%) Trend - Daily</td>
          <td>chart-line</td>
	  
	  <td><a href="#">Defender Secure Score</a></td>
	  
	  
	  
           <td>Trend of Daily Secure Score rating over time</td>
      
      <td><pre></pre></td>
      
     </tr>
     
     <tr> 
          <td>Alerts Trend - Daily</td>
          <td>chart-line</td>
	  
	  <td><a href="#">Defender Alerts</a></td>
	  
	  
	  
           <td>Daily Trend of alert counts by type over time</td>
      
     </tr>
     
     <tr> 
          <td>Alert Severity</td>
          <td>chart-pie</td>
	  
	  <td><a href="#">Defender Alerts</a></td>
	  
	  
	  
           <td>chart showing count of alerts by severity</td>
      
     </tr>
     
     <tr> 
          <td>Device Platforms</td>
          <td>chart-pie</td>
	  
	  <td><a href="#">Defender Devices</a></td>
	  
	  
	  
           <td>Count of devices by platform</td>
      
     </tr>
     
     <tr> 
          <td>Device Groups</td>
          <td>chart-pie</td>
	  
	  <td><a href="#">Defender Devices</a></td>
	  
	  
	  
           <td>Count of devices by device group</td>
      
     </tr>
     
     <tr> 
          <td>Device counts by Agency</td>
          <td>chart-pie</td>
	  
	  <td><a href="#">Defender Devices</a></td>
	  
	  
	  
           <td>chart showing device count by agency</td>
      
      <td><pre>{{ macro.ALLOW_CUSTOMER_HIERARCHY_TYPE }}</pre></td>
      
     </tr>
     
     <tr> 
          <td>Alerts by Agency</td>
          <td>chart-pie</td>
	  
	  <td><a href="#">Defender Alerts</a></td>
	  
	  
	  
           <td>chart showing device count by agency</td>
      
      <td><pre>{{ macro.ALLOW_CUSTOMER_HIERARCHY_TYPE }}</pre></td>
      
     </tr>   
   </tbody></table>

  


.. raw:: html

   <h3>Tables</h3>
  
   <table class="panel-table">
     <thead>
     <tr>
     <th colspan=4  style="text-align:center">TABLES</th>
     </tr>
     <tr>
     <th>Title</th><th>Resource</th><th>Fields</th><th>Drill-down</th>
     </tr>
     </thead>
     <tbody>
     <tr>
     
     
     <tr> <td>Alerts</td>
	  
          <td><a href="#">Defender Alerts</a></td>
	  
	  
	  
          <td>
           
           Alert Name </br>
           Devicetags </br>
           Severity </br>
           Status </br>
           Classification </br>
           Determination </br>
           Category </br>
           Device DNS Name </br>
           User Account Name </br>
           Detection Source </br>
           Product Name </br>
           Policy Name </br>
           Policy Rule Name </br>
           Assigned To </br>
           Created </br>
           Last Updated </br>
         </td>
          <td>drilldown-modelType: N/A</td>
      
     </tr>
     
     <tr> <td>Devices</td>
	  
          <td><a href="#">Defender Devices</a></td>
	  
	  
	  
          <td>
           
           Name </br>
           Last Seen </br>
           First Seen </br>
           OS Platform </br>
           Version </br>
           Last IP Address </br>
           Health Status </br>
           RBAC Group Name </br>
           Risk Score </br>
           Exposure Level </br>
           Machine Tags </br>
         </td>
          <td>drilldown-modelType: N/A</td>
      
     </tr>   
   </tbody></table>



  

