Skip to content

Commit 09a2da4

Browse files
committed
fix for acrolinx
1 parent fb5e816 commit 09a2da4

5 files changed

Lines changed: 19 additions & 19 deletions

File tree

learn-pr/wwl-sci/security-copilot-describe-core-features/6-knowledge-check.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -48,7 +48,7 @@ quiz:
4848
choices:
4949
- content: Select the My sessions option from the home menu.
5050
isCorrect: true
51-
explanation: Correct. My sessions allows users to manage and review past sessions with options to search, filter, rename, duplicate, or delete.
51+
explanation: Correct. My sessions allow users to manage and review past sessions with options to search, filter, rename, duplicate, or delete.
5252
- content: Select the Help icon.
5353
isCorrect: false
5454
explanation: Incorrect. Help provides assistance and information about using the platform, not past session management.

learn-pr/wwl-sci/security-copilot-describe-core-features/includes/2-describe-standalone-experience.md

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -39,11 +39,11 @@ From the home menu, the user can navigate as follows:
3939

4040
- Owner settings. These settings include the option to switch Security Compute Units (SCUs) capacity, select the workspace for Copilot agents, configure data sharing options to help improve Copilot, allow logging audit data in Microsoft Purview, and configure who can upload files.
4141

42-
# [Swtich capacity](#tab/switch-capacity)
42+
# [Switch capacity](#tab/switch-capacity)
4343
:::image type="content" source="../media/owner-settings-capacity.png" lightbox="../media/owner-settings-capacity.png" alt-text="Screen capture showing the owner settings, specifically focused on capacity information.":::
4444

4545
# [Agent workspaces](#tab/agent-worksapces)
46-
:::image type="content" source="../media/agent-workspaces.png" lightbox="../media/agent-workspaces.png" alt-text="Screen capture showing the workspace that will be used for Security Copilot agent experiences in Microsoft Defender, Microsoft Entra, Microsoft Purview and Microsoft Intune.":::
46+
:::image type="content" source="../media/agent-workspaces.png" lightbox="../media/agent-workspaces.png" alt-text="Screen capture showing the workspace that will be used for Security Copilot agent experiences in Microsoft Defender, Microsoft Entra, Microsoft Purview, and Microsoft Intune.":::
4747

4848
# [Improve Copilot](#tab/improve-copilot)
4949
:::image type="content" source="../media/owner-settings-improve-copilot.png" lightbox="../media/owner-settings-improve-copilot.png" alt-text="Screen capture showing the owner settings, specifically focused on data sharing options.":::
@@ -85,7 +85,7 @@ From the home menu, the user can navigate as follows:
8585

8686
- Usage monitoring, which provides a dashboard showing how SCUs are consumed over a period of time by your Microsoft Security Copilot workloads. The usage monitoring dashboard provides visibility, for a selected workspace, into the number of units used, the specific plugins employed during sessions, and the initiators of those sessions. The dashboard also allows you to apply filters and export usage data seamlessly. The dashboard includes up to 90 days of data. Security Copilot supports both provisioned SCUs for predictable workloads and overage SCUs that provide flexible, on-demand capacity billed only when used. Overage SCUs ensure additional capacity is available when initially provisioned units are depleted during unexpected workload spikes. When an analyst is in the middle of an investigation and the usage is nearing the provisioned capacity limit (90%), a notification is displayed to the analyst while entering the prompt. The notification informs the analyst to contact the owner to increase the capacity or limit the number of prompts to avoid disruptions. These notifications are also shown in the Security Copilot embedded experiences.
8787

88-
When the provisioned capacity is crossed, the analyst sees an error message stating that due to high usage in organization, they cannot submit additional prompts. The analyst is asked to contact the owner to increase the provisioned SCUs.
88+
When the provisioned capacity is crossed, the analyst sees an error message stating that due to high usage in the organization, they can't submit additional prompts. The analyst is asked to contact the owner to increase the provisioned SCUs.
8989

9090
# [Usage monitoring](#tab/usage-monitoring)
9191
:::image type="content" source="../media/usage-monitoring-dashboard-new.png" lightbox="../media/usage-monitoring-dashboard-new.png" alt-text="Screen capture showing the usage monitoring dashboard.":::
@@ -134,7 +134,7 @@ Selecting the ellipses on the bottom left corner of the navigation panel, allows
134134
---
135135

136136

137-
- Tenant switcher. The tenant, which is provisioned for Copilot doesn't need to be the tenant your security analyst logs in from. Also a user may have access to Security Copilot across multiple tenants. In the screenshot that follows, the user is provisioned only in the "Zava - Private" tenant. If the user had been provisioned in other tenants, they would be listed and the user would be able to select any of the available tenants.
137+
- Tenant switcher. The tenant, which is provisioned for Copilot doesn't need to be the tenant your security analyst logs in from. Also a user may have access to Security Copilot across multiple tenants. In the screenshot that follows, the user is provisioned only in the "Zava - Private" tenant. If the user had been provisioned in other tenants, they would be listed and the user would be able to select any of the available tenants.
138138

139139
:::image type="content" source="../media/tenant-switcher-v4.png" lightbox="../media/tenant-switcher-v4.png" alt-text="Screen capture showing the tenant switching window, with multiple tenants listed.":::
140140

learn-pr/wwl-sci/security-copilot-describe-core-features/includes/2a-describe-session-features.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ Copilot has features that are common across all sessions and the individual prom
99

1010
### Process log
1111

12-
For every prompt Copilot runs, Copilot generates a process log that is visible to the user. The user can see what capability is used to generate the response. This is important because it enables the user to determine whether the response was generated from a trusted source. In the screenshot that follows, the process log shows that Copilot chose the Incident Analysis capability. The process log also shows that the final output went through safety checks, which is part of Microsoft’s commitment to responsible AI.
12+
For every prompt Copilot runs, Copilot generates a process log that's visible to the user. The user can see what capability is used to generate the response. This is important because it enables the user to determine whether the response was generated from a trusted source. In the screenshot that follows, the process log shows that Copilot chose the Incident Analysis capability. The process log also shows that the final output went through safety checks, which is part of Microsoft’s commitment to responsible AI.
1313

1414
:::image type="content" source="../media/process-log-new.png" lightbox="../media/process-log-new.png" alt-text="Screen capture showing process log, which shows the selected skill and that a safety check was run on the composed message.":::
1515

learn-pr/wwl-sci/security-copilot-describe-core-features/includes/3-describe-microsoft-plugins.md

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -80,11 +80,11 @@ The Azure AI Search plugin allows you to connect your company’s knowledge base
8080

8181
Microsoft Entra is a family of multicloud identity and network access solutions that enables organizations to protect any identity and secure access to any resource. It provides a unified platform for identity and network access management, making it easier to secure identities and access to resources across multicloud and hybrid environments.
8282

83-
Security Copilot integrates with Microsoft Entra. With the Entra plugin enabled, security analysts can instantly get a risk summary, steps to remediate, and recommended guidance for each identity at risk, in natural language. Analysts can use Copilot to guide in the creation of a lifecycle workflow to streamline the process of creating and issuing user credentials and access rights. These and many other Entra capabilities are supported by Copilot.
83+
Security Copilot integrates with Microsoft Entra. With the Microsoft Entra plugin enabled, security analysts can instantly get a risk summary, steps to remediate, and recommended guidance for each identity at risk, in natural language. Analysts can use Copilot to guide in the creation of a lifecycle workflow to streamline the process of creating and issuing user credentials and access rights. These and many other Microsoft Entra capabilities are supported by Copilot.
8484

8585
Microsoft Entra capabilities in Copilot are built-in prompts that you can use but you can also enter your own prompts based on the capabilities supported.
8686

87-
:::image type="content" source="../media/entra-skills.png" lightbox="../media/entra-skills.png" alt-text="Screen capture of the Entra capabilities that can be run in the standalone experience.":::
87+
:::image type="content" source="../media/entra-skills.png" lightbox="../media/entra-skills.png" alt-text="Screen capture of the Microsoft Entra capabilities that can be run in the standalone experience.":::
8888

8989
With the plugin enabled, Copilot integration with Microsoft Entra can also be experienced through the embedded experience. The scenarios supported through the embedded experience are described in more detail in the module titled, "Describe the embedded experiences of Microsoft Security Copilot."
9090

@@ -122,7 +122,7 @@ With the plugin enabled, Copilot integration with Microsoft Intune can also be e
122122

123123
Microsoft Defender XDR is a unified pre- and post-breach enterprise defense suite that natively coordinates detection, prevention, investigation, and response across endpoints, identities, email, and applications to provide integrated protection against sophisticated attacks.
124124

125-
There are two separate plugins in Copilot that relate to Microsoft Defender XDR (the user interface may still show Microsoft 365 Defender):
125+
There are two separate plugins in Copilot that relate to Microsoft Defender XDR:
126126

127127
- Microsoft Defender XDR
128128
- Natural language to KQL for Microsoft Defender XDR
@@ -211,23 +211,23 @@ Copilot capabilities can also be experienced directly from within Purview soluti
211211

212212
Microsoft Sentinel delivers intelligent security analytics and threat intelligence across the enterprise. With Microsoft Sentinel, you get a single solution for attack detection, threat visibility, proactive hunting, and threat response.
213213

214-
There are two separate plugins in Copilot that relate to Sentinel:
214+
There are two separate plugins in Copilot that relate to Microsoft Sentinel:
215215

216216
- Microsoft Sentinel
217217
- Natural language to Microsoft Sentinel KQL
218218

219-
:::image type="content" source="../media/sentinel-skills-v3.png" lightbox="../media/sentinel-skills-v3.png" alt-text="Screen capture of the Sentinel and NL2KQK in Sentinel plugin.":::
219+
:::image type="content" source="../media/sentinel-skills-v3.png" lightbox="../media/sentinel-skills-v3.png" alt-text="Screen capture of the Microsoft Sentinel and NL2KQK in Microsoft Sentinel plugin.":::
220220

221221
***Microsoft Sentinel***
222222

223-
To utilize the Sentinel plugin, the user would need to be assigned a role permission that grants access to Copilot and a Sentinel specific role like Microsoft Sentinel Reader to access incidents in the workspace.
223+
To utilize the Microsoft Sentinel plugin, the user would need to be assigned a role permission that grants access to Copilot and a Microsoft Sentinel specific role like Microsoft Sentinel Reader to access incidents in the workspace.
224224

225-
The Sentinel plugin also requires the user to configure the Sentinel workspace, the subscription name, and the resource group name.
225+
The Microsoft Sentinel plugin also requires the user to configure the Microsoft Sentinel workspace, the subscription name, and the resource group name.
226226

227-
:::image type="content" source="../media/sentinel-plugin-settings-v2.png" lightbox="../media/sentinel-plugin-settings-v2.png" alt-text="Screen capture of the Sentinel plugin settings page.":::
227+
:::image type="content" source="../media/sentinel-plugin-settings-v2.png" lightbox="../media/sentinel-plugin-settings-v2.png" alt-text="Screen capture of the Microsoft Sentinel plugin settings page.":::
228228

229-
The Sentinel plugin capabilities are focused on incidents and workspaces. Additionally, Copilot includes a promptbook for Microsoft Sentinel incident investigation. This promptbook includes prompts for getting a report about a specific incident, along with related alerts, reputation scores, users, and devices.
229+
The Microsoft Sentinel plugin capabilities are focused on incidents and workspaces. Additionally, Copilot includes a promptbook for Microsoft Sentinel incident investigation. This promptbook includes prompts for getting a report about a specific incident, along with related alerts, reputation scores, users, and devices.
230230

231231
***Natural language to Microsoft Sentinel KQL***
232232

233-
The natural language to Sentinel KQL (NL2KQLSentinel) plugin converts any natural-language question in the context of threat hunting, into a ready-to-run KQL query. This saves security teams time by generating a KQL query that can then be automatically run or further tweaked according to the analyst’s needs.
233+
The natural language to Microsoft Sentinel KQL (NL2KQLSentinel) plugin converts any natural-language question in the context of threat hunting, into a ready-to-run KQL query. This saves security teams time by generating a KQL query that can then be automatically run or further tweaked according to the analyst’s needs.

learn-pr/wwl-sci/security-copilot-describe-core-features/includes/5a-describe-knowledge-base-connections.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -73,13 +73,13 @@ To create the connection to an existing Azure AI Search index, configure the Azu
7373
- Name of Azure AI Search service – This is the name of your search service.
7474
- Name of index – This is the name of the index, within your Azure AI search instance, that will be searched.
7575
- Name of vector field in index – This is the name of the field in the index containing the vector of embeddings.
76-
- Name of text field in index – This is the name of the text field in the index. The contents of this field, in your index, represents the text to search. If your index was created using the Import and vectorize data wizard, the name of the field containing the text to search may be referred to as chunk, as a default. The reason is that the wizard will chunk your data so that it doesn't exceed the token limit size of the embedding model. The default index field name, chunk, is referring to a chunk of text.
76+
- Name of text field in index – This is the name of the text field in the index. The contents of this field, in your index, represents the text to search. If your index was created using the Import and vectorize data wizard, the name of the field containing the text to search may be referred to as chunk, as a default. The reason is that the wizard will chunk your data so that it doesn't exceed the token limit size of the embedding model. The default index field name, chunk, is referring to a chunk of text.
7777
- Name of title field in index – This is the name of the title field in the index and represents the title of each document to display as a source (optional).
7878
- Value – This is the access identifier for API authentication.
7979

8080
:::image type="content" source="../media/ai-search-plugin-settings.png" lightbox="../media/ai-search-plugin-settings.png" alt-text="Screen capture of the Azure AI Search plugin parameters.":::
8181

82-
1. To obtain the information that you'll use for the plugin settings, you need to go to the Azure portal. Open a new browser tab to go to the Azure portal (https://portal.azure.com).
82+
1. To obtain the information that you use for the plugin settings, you need to go to the Azure portal. Open a new browser tab to go to the Azure portal (https://portal.azure.com).
8383

8484
1. From the Azure portal, search for and navigate to Azure AI Search.
8585

@@ -112,7 +112,7 @@ To create the connection to an existing Azure AI Search index, configure the Azu
112112
1. Check that all your parameters are correct for the search instance and index you want to connect to then select save.
113113

114114
> [!IMPORTANT]
115-
> Currently, Copilot does not validate your credentials when you save your settings. If they are not correct, you will see an error later when Copilot attempts to run the Azure AI Search plugin. Close the Azure AI Search settings window.
115+
> Currently, Copilot doesn't validate your credentials when you save your settings. If they aren't correct, you see an error later when Copilot attempts to run the Azure AI Search plugin. Close the Azure AI Search settings window.
116116
117117
Once connected, prompt Copilot to look for information in the Azure AI Search index. Make sure to mention "Azure AI Search" in the prompt. For example:
118118

0 commit comments

Comments
 (0)