Cofense PDC.
Use Cases and Deployment Scope
We currently use Cofense Phishing Defense Center (PDC) as our tier 1 triage team for emails that have been reported by our users. This team conducts the initial investigation and provides OSINT on any of the IOCs that have been discovered in the suspicious email. Our in-house SOC team then uses the information given to us by the PDC team to determine the next steps that need to be actioned.
Pros
- Response time.
- Identifying multi-stage threats.
- Through investigations.
Cons
- Attachment sandbox.
- URL Sandbox.
- Interface that is easier on the eyes.
Likelihood to Recommend
Cofense Phishing Defense Center (PDC) has saved our team copious amounts of time that we would usually have to spend sifting through all of the hundreds of emails that are reported each day. Having a dedicated team to sort the true positives from the false positives gives ample amount of time to triage the more severe threats that have been reported.
