Jamf After Dark cover image

macOS Threat Detection with Matt Benyo

Jamf After Dark

CHAPTER

What Kinds of Events Are You Looking For?

The end point security framework allows a tool like Jamf Protect to detect and act on local events. There are two main types of events that most detections are built around. The big ones are file events, things like a file getting created, deleted or moved. And I would say probably 95% of our detections are focused on those.

00:00
Transcript
Play full episode

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner