Skip to content
What is the Security Compute Unit in MS Copilot for Security Context

What is the Security Compute Unit in MS Copilot for Security Context

Written By Krishna R
Last Updated April 9, 2024
Posted In AI
SHARE

Hi, let’s discuss what the Security Compute Unit in MS Copilot is for Security Context. You all know that Copilot is an AI-powered assistant designed to help users with various tasks. We can also say that Copilot is a companion for every user.

Whether you need assistance with writing, coding, or just looking for information, Copilot is there to assist efficiently and effectively. A Security Compute Unit (SCU) is like a unit of measurement that helps decide how much device power is needed to ensure Copilot for Security runs well.

It’s used as part of other security tools like Microsoft Defender XDR to keep Copilot for Security working without any problems. By using just one Security Compute Unit (SCU), customers of Copilot for Security can use Microsoft Defender Threat Intelligence (MDTI) as much as they want.

Cybersecurity is an essential part of this digital world. Microsoft Defender Threat Intelligence (MDTI) is a powerful tool that helps organizations protect themselves against cyber threats. It includes many tools that help understand and deal with security risks. By using Generative AI, MDTI becomes even more effective and offers a strong and flexible way to keep organizations safe.

Patch My PC
What is the Security Compute Unit in MS Copilot for Security Context- Fig.1
What is the Security Compute Unit in MS Copilot for Security Context- Fig.1

What is the Security Compute Unit in MS Copilot for Security Context

MDTI is a security tool that provides experts with many alerts from Microsoft to help them avoid cyber threats. It also offers up-to-date reports and profiles on hackers and their methods. MDTI also helps to track down and study cyber threat patterns worldwide, showing where a company could be open to attacks and helping to fight back against hackers’ methods.

  • MDTI enhances Microsoft’s security tools by providing extensive threat intelligence that helps users fully understand cyberattacks and plan their defence.
  • MDTI is valuable to Microsoft’s security tools like SIEM, XDR, and AI solutions.
  • Customers can use MDTI and AI to get a better and more complete picture of online security risks.
  • Users can start using MDTI immediately in Copilot for Security as a standalone or within Defender XDR.
What is the Security Compute Unit in MS Copilot for Security Context- Fig.2 Creds to MS
What is the Security Compute Unit in MS Copilot for Security Context- Fig.2 Creds to MS

MDTI In Copilot for Security 

Microsoft Copilot for Security allows users to access and work with Microsoft’s threat intelligence using natural language. You can ask questions about threat actors, tools, and indicators of compromise (IoCs) related to their security incidents. The answer is always against the threats, is up to date, and provides critical information.

  • MDTI (Microsoft Defender Threat Intelligence) powers Copilot for Security. 
  • It allows various threat intelligence skills and always helps users retrieve information on indicators like IP addresses and domains
  • Promptbooks are guides that help match data from Microsoft’s Defender Threat Intelligence with other security details from Defender XDR.
  • To use this option, turn on the Microsoft Defender Threat Intelligence option in the plugin settings.
What is the Security Compute Unit in MS Copilot for Security Context- Fig.3 Creds to MS
What is the Security Compute Unit in MS Copilot for Security Context- Fig.3 Creds to MS

MDTI In Defender XDR 

Defender XDR uses MDTI to facilitate security analysis and to get all the essential threat information in one place. It helps with security alerts and searching for threats. You can find MDTI in the Defender XDR portal; users can access MDTI under the “Threat Intelligence” blade in the left-hand navigation menu.

MDTI under the Threat IntelligenceInfo

Intel Explorer
In this section, customers can look through all the threat intelligence available in MDTI, read featured articles, and check out the latest reports on threats
Intel ProfilesThis tab contains over 300 continuously maintained profiles on threat actors, tooling, and vulnerabilities. 
Intel ProjectsIn this section, users can create or access team and individual projects to save personal investigations and collaborate with teammates across the organization. 
Detonation Intelligence for Hashes and URL SearchCustomers can get detailed information about a file or website and see if it’s linked to any known security threats listed in intelligence reports.
What is the Security Compute Unit in MS Copilot for Security Context- Table.1
What is the Security Compute Unit in MS Copilot for Security Context- Fig.4 Creds to MS
What is the Security Compute Unit in MS Copilot for Security Context- Fig.4 Creds to MS

The MDTI API is not included with Copilot for Security

Suppose the users need to use MDTI’s advanced features for automatic updates or to write complex scripts that MDTI Copilot can’t do yet. In that case, they should talk to their Commercial Executive to learn more about purchasing our MDTI API license

Reference

A Copilot for Security Customer’s Guide to MDTI

We are on WhatsApp. To get the latest step-by-step guides and news updates, Join our Channel. Click here –HTMD WhatsApp.

Author

Krishna. R is a computer enthusiast. She loves writing about Windows 11 and Intune-related technologies and sharing her knowledge, quick tips, and tricks about Windows 11 or 10 with the community.

Discussion

Join the discussion

Your email address will not be published. Required fields are marked *

Related guides

AI

How to Configure Google Gemini Integration Settings using Microsoft Intune

Key Takeaways How to Configure Google Gemini Integration Settings using Microsoft Intune! Google Chrome’s Generative AI settings in Intune allow administrators to centrally manage how Chrome’s AI-powered features function across enterprise devices. These settings are especially important in today’s AI-driven era. Once devices are properly enrolled in Microsoft Intune, administrators can seamlessly enforce these policies, […]

SN Sujin Nelladath 6 min read
AI

16 New Windows Vulnerabilities Discovered by MDASH AI-Powered Agentic Security System

Key Takeaways In this post we are discussing 16 New Windows Vulnerabilities Discovered by MDASH AI-Powered Agentic Security System. Recently, Microsoft announced a new AI-powered security system called MDASH (Microsoft Security multi-model agentic scanning harness) that can automatically find serious software vulnerabilities in Windows. Microsoft explains that the platform helped researchers discover 16 new security flaws, including several critical […]

AC Anoop C Nair 4 min read
AI

3 Core Areas to Improve Security Reduce Risk and Build Resilience Against AI-Driven Threats

Key Takeaways In this post, we are discussing3 Core Areas to Improve Security Reduce Risk and Build Resilience Against AI-Driven Threats. Microsoft has introduced a set of new security capabilities focused on AI threats more effectively. This includes updated guidance to help organisations assess their exposure, prioritise critical risks, and take faster action to fix […]

AC Anoop C Nair 4 min read
AI

Intune Policy Now Allows Automatic Removal of Unused Copilot App

Key Takeaways In this Post, we are discussing Intune Policy Now Allows Automatic Removal of Unused Copilot App. Microsoft has introduced a new policy setting that allows IT administrators to uninstall the Microsoft Copilot app from managed devices under specific conditions. The feature is designed to help organizations better control app deployments and reduce unused […]

AC Anoop C Nair 7 min read