Configuring Incident Response Settings

After you have successfully registered Advanced Threat Assessment Service to Trend Micro Threat Investigation Center, you can update the registration information or configure settings on the Incident Response > Settings screen.

Field

Description

Company GUID

Type the company GUID to register to Trend Micro Threat Investigation Center.

Server address

Type the server address for Trend Micro Threat Investigation Center.

Notification recipients

Type one or more email addresses to send notifications.

Allow forensic agent to stay on endpoints

Select this option to allow the forensic agent to reside on an endpoint for the specified number of days after deployment. This allows administrators to perform additional tasks on the endpoints without having to redeploy the forensic agent.

Ignore new forensic tasks from Trend Micro Threat Investigation Center

Select this option to stop receiving new task requests from Trend Micro Threat Investigation Center.

Send notification for new pending tasks

Select this option to send notifications when the Advanced Threat Assessment Service server receives a new task from Trend Micro Threat Investigation Center.

Send notification to install forensic agent on specific endpoints

Select this option to send a notification for each endpoint that require forensic agent installation to perform the approved tasks.