14 new detection rules for SentinelOne agent 🕵
SEKOIA.IO already gives you the possibility to plug in with the SentinelOne agent and you will be glad to know that **14 rules specific** to this intake have been added!
These rules are a selection of the most interesting events sent by the SentinelOne agent, such as "SentinelOne agent being disabled" or "Suspicious threat detected but not mitigated".
![Capture d’écran 2022-07-18 à 10.44.09.png](BASE/products/901462981/changelog/11653/inline-ad5f9b4de200fc3a30960b4cbee0bac0.jpg)
Please note that a rule named "SentinelOne Custom Rule Alert" has an "intermediate" effort and will raise alerts on SEKOIA.IO based on your SentinelOne Custom Rules. Therefore, you might want to tweak that rule depending on your Custom Rules.